CVE-2001-0927: High severity Gnome Libgtop Daemon vulnerability
Published Nov 27, 2001
·Updated
Format string vulnerability in the permitted function of GNOME libgtopdaemon in libgtop 1.0.12 and earlier allows remote attackers to execute arbitrary code via an argument that contains format specifiers that are passed into the (1) syslogmessage and (2) syslogiomessage functions.
Affected Software
4 affected components
Gnome Libgtop Daemon=1.0.6
Gnome Libgtop Daemon=1.0.7
Gnome Libgtop Daemon=1.0.9
Gnome Libgtop Daemon=1.0.12
Remediation
Patch Available
Event History
Nov 27, 2001
CVE Published
05:00 AM
Feb 2, 2002
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0927?
CVE-2001-0927 is considered a critical vulnerability as it allows remote attackers to execute arbitrary code.
2
How do I fix CVE-2001-0927?
To fix CVE-2001-0927, update GNOME libgtop_daemon to a version later than 1.0.12.
3
Which versions of libgtop are affected by CVE-2001-0927?
CVE-2001-0927 affects libgtop versions 1.0.6, 1.0.7, 1.0.9, and 1.0.12.
4
Can CVE-2001-0927 be exploited remotely?
Yes, CVE-2001-0927 can be exploited remotely through crafted arguments containing format specifiers.
5
What type of vulnerability is CVE-2001-0927 classified as?
CVE-2001-0927 is classified as a format string vulnerability.