Format string vulnerability in misc.c in GNU GNATS 4.00 may allow remote attackers to execute arbitrary code via format string specifiers in a string that gets logged by syslog.
| Software | From | Fixed in |
|---|---|---|
| gnu / gnats | 4.0 | 4.0.x |
| gnu / gnats | 3.113 | 3.113.x |
| gnu / gnats | 3.113.1.6 | 3.113.1.6.x |
| gnu / gnats | 3.14b | 3.14b.x |
| gnu / gnats | 3.2 | 3.2.x |
| gnu / gnats | 3.0_02 | 3.0_02.x |
| gnu / gnats | 3.113.1 | 3.113.1.x |