CVE-2008-1206

Severity CVSS v4.0:
Pending analysis
Type:
CWE-134 Format String Vulnerability
Publication date:
08/03/2008
Last modified:
09/04/2025

Description

Format string vulnerability in the log_message function in lks.c in Linux Kiss Server 1.2, when background (daemon) mode is disabled, allows remote attackers to cause a denial of service (crash) or execute arbitrary code via format string specifiers in an invalid command.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:linux_kiss_server:linux_kiss_server:1.2:*:*:*:*:*:*:*