CVE-2003-0886: Critical severity Hylafax HylaFAX vulnerability
Published Nov 12, 2003
·Updated
Format string vulnerability in hfaxd for Hylafax 4.1.7 and earlier allows remote attackers to execute arbitrary code.
Affected Software
7 affected components
Hylafax HylaFAX=4.1
Hylafax HylaFAX=4.1.1
Hylafax HylaFAX=4.1.2
Hylafax HylaFAX=4.1.3
Hylafax HylaFAX=4.1.5
Hylafax HylaFAX=4.1.6
Hylafax HylaFAX=4.1.7
Remediation
Patch Available
Event History
Nov 12, 2003
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Dec 1, 2003
Data Sourced
via NVD·05:00 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2003-0886?
CVE-2003-0886 has been assigned a high severity rating due to its potential to allow remote code execution.
2
How do I fix CVE-2003-0886?
To fix CVE-2003-0886, upgrade Hylafax to version 4.1.8 or later to mitigate the vulnerability.
3
What software versions are affected by CVE-2003-0886?
CVE-2003-0886 affects Hylafax versions 4.1.0 through 4.1.7.
4
What type of vulnerability is CVE-2003-0886?
CVE-2003-0886 is a format string vulnerability that can lead to arbitrary code execution.
5
Who can exploit CVE-2003-0886?
Remote attackers can exploit CVE-2003-0886 to execute arbitrary code on vulnerable systems.