CVE-2006-3126 Information
Feb 14, 2021
cve
Description
c2faxrecv in capi4hylafax 01.02.03 allows remote attackers to execute arbitrary commands via null (\0) and shell metacharacters in the TSI string as demonstrated by a fax from an anonymous number.
Reference
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=382474 http://secunia.com/advisories/21722 http://secunia.com/advisories/21726 http://secunia.com/advisories/22450 http://security.gentoo.org/glsa/glsa-200610-05.xml http://www.debian.org/security/2006/dsa-1165 http://www.novell.com/linux/security/advisories/2007_4_sr.html http://www.securityfocus.com/bid/19801 http://www.vupen.com/english/advisories/2006/3430
Share on: