CVE-2004-0536
Publication date 6 August 2004
Last updated 17 July 2025
Ubuntu priority
Description
Format string vulnerability in Tripwire commercial 4.0.1 and earlier, including 2.4, and open source 2.3.1 and earlier, allows local users to gain privileges via format string specifiers in a file name, which is used in the generation of an email report.