CVE-2014-4168
N/A
N/A
Summary
(1) iodined.c and (2) user.c in iodine before 0.7.0 allows remote attackers to bypass authentication by continuing execution after an error has been triggering.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://secunia.com/advisories/59417
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=751834
- http://www.openwall.com/lists/oss-security/2014/06/18/1
- http://www.openwall.com/lists/oss-security/2014/06/16/5
- https://github.com/yarrick/iodine/blob/b715be5cf3978fbe589b03b09c9398d0d791f850/CHANGELOG
- http://www.debian.org/security/2014/dsa-2964
References
- http://secunia.com/advisories/59417
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=751834
- http://www.openwall.com/lists/oss-security/2014/06/18/1
- http://www.openwall.com/lists/oss-security/2014/06/16/5
- https://github.com/yarrick/iodine/blob/b715be5cf3978fbe589b03b09c9398d0d791f850/CHANGELOG
- http://www.debian.org/security/2014/dsa-2964
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.