Vulnerability Name: | CVE-2013-4258 (CCN-87543) | ||||||||||||
Assigned: | 2013-08-20 | ||||||||||||
Published: | 2013-08-20 | ||||||||||||
Updated: | 2016-12-31 | ||||||||||||
Summary: | Format string vulnerability in the osLogMsg function in server/os/aulog.c in Network Audio System (NAS) 1.9.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in unspecified vectors, related to syslog. | ||||||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P) 5.5 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
5.0 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
| ||||||||||||
Vulnerability Type: | CWE-134 | ||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||
References: | Source: CCN Type: Debian Bug report logs -720287 nas: CVE-2013-4256 CVE-2013-4257 CVE-2013-4258 Source: MITRE Type: CNA CVE-2013-4258 Source: CCN Type: Debian Network Audio System Web Site Debian Network Audio System Source: MLIST Type: Exploit [nas] 20130807 nas: Multiple Vulnerabilities in nas 1.9.3 Source: MLIST Type: UNKNOWN [nas] 20130808 nas: Multiple Vulnerabilities in nas 1.9.3 Source: MLIST Type: UNKNOWN [nas-commits] 20120122 SF.net SVN: nas:[285] trunk/server/os/aulog.c Source: DEBIAN Type: UNKNOWN DSA-2771 Source: DEBIAN Type: DSA-2771 nas -- several vulnerabilities Source: MLIST Type: UNKNOWN [oss-security] 20130816 CVE Request : NAS v1.9.3 multiple Vulnerabilites Source: MLIST Type: UNKNOWN [oss-security] 20130819 Re: CVE Request : NAS v1.9.3 multiple Vulnerabilites Source: BID Type: UNKNOWN 61852 Source: CCN Type: BID-61852 Network Audio System CVE-2013-4258 Format String Vulnerability Source: XF Type: UNKNOWN networkaudio-cve20134258-format-string(87543) Source: CCN Type: WhiteSource Vulnerability Database CVE-2013-4258 | ||||||||||||
Vulnerable Configuration: | Configuration 1:![]() | ||||||||||||
Oval Definitions | |||||||||||||
| |||||||||||||
BACK |