CVE-2005-1100
EPSS 11.0%
Description
Format string vulnerability in the ErrorLog function in cnf.c in Greylisting daemon (GLD) 1.3 and 1.4 allows remote attackers to execute arbitrary code via format string specifiers in data that is passed directly to syslog.
How to fix CVE-2005-1100
To remediate CVE-2005-1100, upgrade the affected package to a fixed version below.
- Debian/postfix-gld—upgrade to 1.5-1 or later
Is CVE-2005-1100 being exploited?
Moderate — EPSS is 11.0%. Track this CVE but it's not at the top of the prioritisation list.
Affected packages (1)
- from 0, < 1.5-1