>> Trustix Security Update Fixes CP+ Denial of Service Vulnerability
Title : Trustix Security Update Fixes CP+ Denial of Service Vulnerability VUPEN ID : VUPEN/ADV-2005-2829 CVE ID : CVE-2005-3962
Rated as : Low Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2005-12-12
Technical Description
Trustix has released updated packages to correct a vulnerability identified in CP+. This flaw is due to an error in Perl that does not properly handle format string specifiers with large values, which could be exploited by attackers to crash an affected application. For additional information, see : VUPEN/ADV-2005-2828