CVE-2009-3617
Published Oct 20, 2009
Last updated a year ago
Overview
- Description
- Format string vulnerability in the AbstractCommand::onAbort function in src/AbstractCommand.cc in aria2 before 1.6.2, when logging is enabled, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via format string specifiers in a download URI. NOTE: some of these details are obtained from third party information.
- Source
- secalert@redhat.com
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.6
- Impact score
- 10
- Exploitability score
- 4.9
- Vector string
- AV:N/AC:H/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- CWE-134
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0408A5B5-1B7B-4984-8634-6FDDA2D73583", "versionEndIncluding": "1.6.1" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.11.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C997A75D-C176-4A6A-8997-D6F74BBBDF35" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.11.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "540A0ACA-6E2A-45DF-B3C4-37F1DB6AA1BE" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.11.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D4FDABE1-D6AA-498A-9E75-29D4E2231565" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.12.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "23D21ADF-742F-4B5E-BE76-2D79BD090A85" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.12.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FE3B0EB4-BEE9-4EAA-B347-376C04550098" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.13.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CD4F3902-615A-4EDD-BB81-03841E686C42" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.13.0\\+1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B371FD0E-49A2-4A74-A047-16AC1FC5FB85" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.13.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3427790A-846E-4F5D-B28A-3C175AEF6ADD" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.13.1\\+1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FAAADBF9-839C-486D-821B-460DCEDAF548" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.13.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "378CD567-A5CD-48E2-BCA6-5E08335685EF" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.13.2\\+1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4BEF6895-6555-48B2-8FED-2747BAAEB9C9" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.14.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5260D845-B580-49B7-8BEB-8EE3F0919BFD" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.14.0\\+1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "744775BE-7FAF-4FFC-8F68-81C2B6FD71FC" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.15.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "19533000-5927-478D-A786-CB63E93948B3" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.15.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "70F2BDE0-CC4B-4C1C-9FFA-D4E3F5AA37DA" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.15.1\\+1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "973F6E89-D2E8-4C92-B534-43248587840D" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.15.1\\+2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3BC24DE0-7D6B-4284-A73A-E5982B49ACB7" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.15.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "06C66BAD-4A07-4FAB-9BFF-50FB37D06647" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.15.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6798D1A2-F961-48C5-A2F6-086A3A2DB456" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.16.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "55F425AA-624E-41A9-83CD-19F913E39C12" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.16.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B3D3774F-C55C-40B6-A85D-DBD5DAE666C5" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:0.16.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E8315C60-79EF-4484-B54B-2E7E1FEB5FAF" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:1.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E9ED06F2-8669-4C90-BB22-5DDE01DFD4F1" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:1.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "371FD10B-90BB-417C-A37E-F5C50EFAEF22" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:1.1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D1FC3F03-3890-4466-8A0A-B020460B8507" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:1.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "40FAE4C8-7F23-4E67-BA06-276BC3A5DE62" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:1.3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CE6E9CCB-8DCF-41F8-A4DE-5B4D139E719A" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:1.3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E0594B76-BE61-451D-8512-B9C81F476372" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:1.3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D248E3DA-D9FF-4A08-9C63-9B72AE946AD3" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:1.3.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3BBCD24D-B863-4516-A7DD-1264D5D81BD3" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:1.4.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4F72DB79-0C01-481A-A442-4489C5C859B8" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:1.4.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4166DE3D-3019-434F-9EC5-C74057F91F65" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:1.5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "836C565A-B1EB-4ED1-BCFB-EF60CFE9ED8A" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:1.5.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F4EB136B-45C1-439D-810F-E234267A44EE" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:1.5.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F49FE022-33DC-4F05-8D64-1E64816E391F" }, { "criteria": "cpe:2.3:a:tatsuhiro_tsujikawa:aria2:1.6.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2C0ECA2A-043C-4C36-9618-E3EAE45AA5CD" } ], "operator": "OR" } ] } ]