CVE-2004-0536

Publication date 6 August 2004

Last updated 24 July 2024


Ubuntu priority

Format string vulnerability in Tripwire commercial 4.0.1 and earlier, including 2.4, and open source 2.3.1 and earlier, allows local users to gain privileges via format string specifiers in a file name, which is used in the generation of an email report.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
tripwire 7.04 feisty
Fixed 2.3.1.2.0-6
6.10 edgy
Fixed 2.3.1.2.0-6
6.06 LTS dapper
Fixed 2.3.1.2.0-6