CVE-2013-2131
EPSS 10.9%
Description
Format string vulnerability in the rrdtool module 1.4.7 for Python, as used in Zenoss, allows context-dependent attackers to cause a denial of service (crash) via format string specifiers to the rrdtool.graph function.
How to fix CVE-2013-2131
To remediate CVE-2013-2131, upgrade the affected package to a fixed version below.
- Debian/rrdtool—upgrade to 1.4.8-1 or later
Is CVE-2013-2131 being exploited?
Moderate — EPSS is 10.9%. Track this CVE but it's not at the top of the prioritisation list.
Affected packages (1)
- from 0, < 1.4.8-1