VULNERABILITY INTELLIGENCE

CVE-2002-0176

CVSS score4.6 MEDIUM
EPSS probability0.47%
CISA KEVNot currently listed
Published2002-04-22
Last modified2026-06-16
CVSS vectorAV:L/AC:L/Au:N/C:P/I:P/A:P

Description

The printf wrappers in libsafe 2.0-11 and earlier do not properly handle argument indexing specifiers, which could allow attackers to exploit certain function calls through arguments that are not verified by libsafe.

Primary references