CVE-2019-13455: Buffer Overflow
Published Aug 27, 2019
·Updated
In Xymon through 4.3.28, a stack-based buffer overflow vulnerability exists in the alert acknowledgment CGI tool because of expansion in acknowledge.c.
Affected Software
2 affected components
Xymon xymon<=4.3.28
Debian Debian Linux=8.0
Event History
Aug 27, 2019
CVE Published
via MITRE·04:28 PM
Data Sourced
via MITRE·04:28 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-13455?
CVE-2019-13455 is classified as a critical vulnerability due to its potential for remote code execution via a stack-based buffer overflow.
2
How do I fix CVE-2019-13455?
To fix CVE-2019-13455, upgrade your Xymon software to version 4.3.29 or later.
3
What software is affected by CVE-2019-13455?
CVE-2019-13455 affects Xymon versions up to and including 4.3.28 and Debian version 8.0.
4
How can CVE-2019-13455 be exploited?
CVE-2019-13455 can be exploited by sending specially crafted input to the alert acknowledgment CGI tool, leading to a stack-based buffer overflow.
5
What impact does CVE-2019-13455 have on systems?
The impact of CVE-2019-13455 includes potential unauthorized access and execution of arbitrary code on affected systems.