DescriptionFormat string vulnerability in the mod_tcl module 1.0 for Apache 2.x allows context-dependent attackers to execute arbitrary code via format string specifiers that are not properly handled in a set_var function call in (1) tcl_cmds.c and (2) tcl_core.c.
Overall state of this security issue: Does not affect SUSE products
This issue is currently rated as having moderate severity.
|National Vulnerability Database|
Note from the SUSE Security TeamThis problem affects mod_tcl, which is not shipped with SUSE Linux Enterprise 10 or 11. So SUSE Linux Enterprise 10 and 11 are not affected by this security problem. No SUSE Bugzilla entries cross referenced. No SUSE Security Announcements cross referenced.
SUSE Timeline for this CVECVE page created: Fri Jun 28 05:09:12 2013
CVE page last modified: Fri Oct 7 12:45:34 2022