CVE-2003-0672 Information

Description

Format string vulnerability in pam-pgsql 0.5.2 and earlier allows remote attackers to execute arbitrary code via the username that isp rovided during authentication which is not properly handled when recording a log message.

Reference

http://www.debian.org/security/2003/dsa-370

Share on: