CVE-2008-0003
CVE-2008-0003
Stack-based buffer overflow in the PAMBasicAuthenticator::PAMCallback function in OpenPegasus CIM management server (tog-pegasus), when compiled to use PAM and without PEGASUS_USE_PAM_STANDALONE_PROC defined, might allow remote attackers to execute arbitrary code via unknown vectors, a different vulnerability than CVE-2007-5360.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01438409http://lists.vmware.com/pipermail/security-announce/2008/000014.htmlhttp://osvdb.org/40082https://bugzilla.redhat.com/show_bug.cgi?id=426578http://secunia.com/advisories/28338http://secunia.com/advisories/28462http://secunia.com/advisories/29056http://secunia.com/advisories/29785http://secunia.com/advisories/29986http://securitytracker.com/id?1019159https://exchange.xforce.ibmcloud.com/vulnerabilities/39527https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10282