Vulnerability Name:

CVE-2002-0916 (CCN-9248)

Assigned:2002-06-04
Published:2002-06-04
Updated:2008-09-05
Summary:Format string vulnerability in the allowuser code for the Stellar-X msntauth authentication module, as distributed in Squid 2.4.STABLE6 and earlier, allows remote attackers to execute arbitrary code via format strings in the user name, which are not properly handled in a syslog call.
CVSS v3 Severity:7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
7.5 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-Other
Vulnerability Consequences:Gain Access
References:Source: CCN
Type: VulnWatch Mailing List, Mon Jun 03 2002 - 21:25:18 CDT
[DER #11] - Remotey exploitable fmt string bug in squid

Source: VULNWATCH
Type: UNKNOWN
20020603 [VulnWatch] [DER #11] - Remotey exploitable fmt string bug in squid

Source: MITRE
Type: CNA
CVE-2002-0916

Source: CCN
Type: Stellar-x Software Web site
Stellar-X software downloads

Source: BUGTRAQ
Type: UNKNOWN
20020604 [DER #11] - Remotey exploitable fmt string bug in squid

Source: XF
Type: Vendor Advisory
msntauth-squid-format-string(9248)

Source: CCN
Type: OSVDB ID: 5050
Squid Stellar-X Module msntauth User Name Format String

Source: BID
Type: Vendor Advisory
4929

Source: CCN
Type: BID-4929
Stellar-X MSNTAuth Syslog Format String Vulnerability

Source: CONFIRM
Type: UNKNOWN
http://www.squid-cache.org/Versions/v2/2.4/diff-2.4.STABLE6-2.4.STABLE7.gz

Source: XF
Type: UNKNOWN
msntauth-squid-format-string(9248)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:stellar-x_software:msntauth:*:*:*:*:*:*:*:* (Version <= 2.0.3)

  • * Denotes that component is vulnerable
    BACK
    stellar-x_software msntauth *