GLSA-200501-21 : HylaFAX: hfaxd unauthorized login vulnerability

High Nessus Plugin ID 16412


The remote Gentoo host is missing one or more security-related patches.


The remote host is affected by the vulnerability described in GLSA-200501-21 (HylaFAX: hfaxd unauthorized login vulnerability)

The code used by hfaxd to match a given username and hostname with an entry in the hosts.hfaxd file is insufficiently protected against malicious entries.
Impact :

If the HylaFAX installation uses a weak hosts.hfaxd file, a remote attacker could authenticate using a malicious username or hostname and bypass the intended access restrictions.
Workaround :

As a workaround, administrators may consider adding passwords to all entries in the hosts.hfaxd file.


All HylaFAX users should upgrade to the latest version:
# emerge --sync # emerge --ask --oneshot --verbose '>=net-misc/hylafax-4.2.0-r2' Note: Due to heightened security, weak entries in the hosts.hfaxd file may no longer work. Please see the HylaFAX documentation for details of accepted syntax in the hosts.hfaxd file.

See Also

Plugin Details

Severity: High

ID: 16412

File Name: gentoo_GLSA-200501-21.nasl

Version: $Revision: 1.16 $

Type: local

Published: 2005/02/14

Modified: 2015/04/13

Dependencies: 12634

Risk Information

Risk Factor: High


Base Score: 7.5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Information

CPE: p-cpe:/a:gentoo:linux:hylafax, cpe:/o:gentoo:linux

Required KB Items: Host/local_checks_enabled, Host/Gentoo/release, Host/Gentoo/qpkg-list

Patch Publication Date: 2005/01/11

Vulnerability Publication Date: 2005/01/11

Reference Information

CVE: CVE-2004-1182

OSVDB: 12859

GLSA: 200501-21