LWN.net Logo

SynCE: several vulnerabilities

Package(s):synce-sync-engine CVE #(s):CVE-2007-6703 CVE-2008-1136
Created:March 7, 2008 Updated:March 12, 2008
Description: Red Hat bug #436023: "Unspecified vulnerability in vdccm before 0.10.1 in SynCE (SynCE-dccm) might allow attackers to cause a denial of service via unspecified vectors."

Red Hat bug #436024: "The Utils::runScripts function in src/utils.cpp in vdccm 0.92 through 0.10.0 in SynCE (SynCE-dccm) allows remote attackers to execute arbitrary commands via shell metacharacters in a certain string to TCP port 5679."

Alerts:
Fedora FEDORA-2008-0680 2008-03-06
Fedora FEDORA-2008-0680 2008-03-06
Fedora FEDORA-2008-0680 2008-03-06
Fedora FEDORA-2008-0680 2008-03-06
Fedora FEDORA-2008-0680 2008-03-06
Fedora FEDORA-2008-0680 2008-03-06
Fedora FEDORA-2008-0680 2008-03-06
Fedora FEDORA-2008-0680 2008-03-06
Fedora FEDORA-2008-0680 2008-03-06
Fedora FEDORA-2008-0680 2008-03-06
Fedora FEDORA-2008-0680 2008-03-06
Fedora FEDORA-2008-0680 2008-03-06

(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds
Powered by Rackspace Managed Hosting.