GNOME libgtop Daemon Remote Format String

This script is Copyright (C) 2001-2014 Tenable Network Security, Inc.


Synopsis :

The remote host is running an application that is vulnerable to a
format string attack.

Description :

It seems that libgtop is/was running on this port and is vulnerable to
a format string attack which may allow an attacker to gain a shell on
this host (with the privileges of 'nobody').

See also :

http://archives.neohapsis.com/archives/bugtraq/2001-11/0218.html

Solution :

Upgrade to libgtop 1.0.13 or later.

Risk factor :

High / CVSS Base Score : 7.5
(CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P)

Family: Gain a shell remotely

Nessus Plugin ID: 10812 (libgtop_daemon.nasl)

Bugtraq ID:

CVE ID: CVE-2001-0927