CVE-2004-0536

Publication date 6 August 2004

Last updated 17 July 2025


Ubuntu priority

Description

Format string vulnerability in Tripwire commercial 4.0.1 and earlier, including 2.4, and open source 2.3.1 and earlier, allows local users to gain privileges via format string specifiers in a file name, which is used in the generation of an email report.

Status

Package Ubuntu Release Status
tripwire 7.04 feisty
Fixed 2.3.1.2.0-6
6.10 edgy
Fixed 2.3.1.2.0-6
6.06 LTS dapper
Fixed 2.3.1.2.0-6


Access our resources on patching vulnerabilities