← Back

Mgetty

mgetty

Vendor: Gert Doering • 6 CVEs

CVEs (6)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Gert Doering
1Mgetty
Apr 23, 2026
Nov 5, 2008
N/A· v4
N/A· v3
6.9 MEDIUM· v2
faxspool in mgetty 1.1.36 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/faxsp.##### temporary file.
1Gert Doering
1Mgetty
Apr 16, 2026
Aug 18, 2003
N/A· v4
N/A· v3
7.5 HIGH· v2
cnd.c in mgetty 1.1.28 and earlier does not properly filter non-printable characters and quotes, which may allow remote attackers to execute arbitrary commands via shell metacharacters in (1) caller ID or (2) caller name...Show more
cnd.c in mgetty 1.1.28 and earlier does not properly filter non-printable characters and quotes, which may allow remote attackers to execute arbitrary commands via shell metacharacters in (1) caller ID or (2) caller name strings.Show less
1Gert Doering
1Mgetty
Apr 16, 2026
Jan 17, 2003
N/A· v4
N/A· v3
2.1 LOW· v2
faxspool in mgetty before 1.1.29 uses a world-writable spool directory for outgoing faxes, which allows local users to modify fax transmission privileges.
1Gert Doering
1Mgetty
Apr 16, 2026
Jan 17, 2003
N/A· v4
N/A· v3
7.5 HIGH· v2
Buffer overflow in cnd-program for mgetty before 1.1.29 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a Caller ID string with a long CallerName argument.
1Gert Doering
1Mgetty
Apr 16, 2026
Mar 12, 2001
N/A· v4
N/A· v3
1.2 LOW· v2
mgetty 1.1.22 allows local users to overwrite arbitrary files via a symlink attack in some configurations.
1Gert Doering
1Mgetty
Apr 16, 2026
Oct 20, 2000
N/A· v4
N/A· v3
2.1 LOW· v2
The faxrunq and faxrunqd in the mgetty package allows local users to create or modify arbitrary files via a symlink attack which creates a symlink in from /var/spool/fax/outgoing/.last_run to the target file.