Início
Início
Tendências
Tendências
Vulnerabilidades
Vulnerabilidades
Notícias
Notícias
Pesquisadores
Pesquisadores
Por que dbugs?
Por que dbugs?
Configurações

Sebastian Pohle

#38305de 56,330
7.5CVSS total
Vulnerabilidades · 1
PT-2012-1049
7.5
2012-06-01
Network Ups Tools · Network Ups Tools · CVE-2012-2944
**Name of the Vulnerable Software and Affected Versions** Network UPS Tools (NUT) versions prior to 2.6.4 nut versions prior to 2.6.3 **Description** The issue affects the confidentiality, integrity, and availability of protected information. It can be exploited remotely. A buffer overflow in the `addchar` function in `common/parseconf.c` in `upsd` allows remote attackers to execute arbitrary code or cause a denial of service. **Recommendations** For versions prior to 2.6.4, update to version 2.6.4 or later to resolve the issue. For versions prior to 2.6.3, update to version 2.6.3 or later to resolve the issue. As a temporary workaround, consider restricting access to the `addchar` function in `common/parseconf.c` to minimize the risk of exploitation.