Welcome to our website
To take full advantage of all features you need to login or register. Registration is completely free and takes only a few seconds.
log2mail Update for Debian
Posted by philipp on: 11/04/2002 11:04 PM [ Print | 0 comment(s) ]
An updated version of log2mail has been released
Enrico Zini discovered a buffer overflow in log2mail, a daemon for watching logfiles and sending lines with matching patterns via mail. The log2mail daemon is started upon system boot and runs as root. A specially crafted (remote) log message could overflow a static buffer, potentially leaving log2mail to execute arbitrary code as root.