Multiple format string vulnerabilities in AFFLIB 2.2.6 allow remote attackers to execute arbitrary code via certain command line parameters, which are used in (1) warn and (2) err calls, possibly involving (a) lib/s3.cpp, (b) tools/afconvert.cpp, (c) tools/afcopy.cpp, (d) tools/afinfo.cpp, (e) aimage/imager.cpp, and (f) tools/afxml.cpp. NOTE: this identifier is intended to address the vectors that were not fixed in CVE-2007-2054, but the unfixed vectors were not explicitly listed.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2007-04-30T22:00:00
Updated: 2024-08-07T13:33:28.640Z
Reserved: 2007-04-30T00:00:00
Link: CVE-2007-2352
Vulnrichment
No data.
NVD
Status : Modified
Published: 2007-04-30T22:19:00.000
Modified: 2024-11-21T00:30:34.573
Link: CVE-2007-2352
Redhat
No data.