Vulnerabilities > CVE-2006-5790 - Remote Format String vulnerability in ELOG EL_Submit Function
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
Multiple format string vulnerabilities in elogd.c in ELOG 2.6.2 and earlier allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via (1) an entry with an attachment whose name contains format string specifiers (el_submit function), and possibly other vectors in the (2) receive_config, (3) show_rss_feed, (4) show_elog_list, (5) show_logbook_node, and (6) server_loop functions.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Nessus
NASL family | Debian Local Security Checks |
NASL id | DEBIAN_DSA-1242.NASL |
description | Several remote vulnerabilities have been discovered in elog, a web-based electronic logbook, which may lead to the execution of arbitrary code. The Common Vulnerabilities and Exposures project identifies the following problems : - CVE-2006-5063 Tilman Koschnick discovered that log entry editing in HTML is vulnerable to cross-site scripting. This update disables the vulnerable code. - CVE-2006-5790 Ulf Harnhammar of the Debian Security Audit Project discovered several format string vulnerabilities in elog, which may lead to execution of arbitrary code. - CVE-2006-5791 Ulf Harnhammar of the Debian Security Audit Project discovered cross-site scripting vulnerabilities in the creation of new logbook entries. - CVE-2006-6318 Jayesh KS and Arun Kethipelly of OS2A discovered that elog performs insufficient error handling in config file parsing, which may lead to denial of service through a NULL pointer dereference. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 23947 |
published | 2006-12-30 |
reporter | This script is Copyright (C) 2006-2019 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/23947 |
title | Debian DSA-1242-1 : elog - several vulnerabilities |
code |
|
References
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=392016
- http://secunia.com/advisories/22638
- http://secunia.com/advisories/23580
- http://www.debian.org/security/2006/dsa-1242
- http://www.securityfocus.com/bid/20876
- http://www.vupen.com/english/advisories/2006/4315
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29987