← Back

Sup

sup

Vendor: Sup • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2Debian
Sup
2Debian Linux
Sup
Apr 16, 2026
Dec 6, 2004
N/A· v4
N/A· v3
10.0 HIGH· v2
Multiple format string vulnerabilities in the (1) logquit, (2) logerr, or (3) loginfo functions in Software Upgrade Protocol (SUP) allows remote attackers to execute arbitrary code via format string specifiers in message...Show more
Multiple format string vulnerabilities in the (1) logquit, (2) logerr, or (3) loginfo functions in Software Upgrade Protocol (SUP) allows remote attackers to execute arbitrary code via format string specifiers in messages that are logged by syslog.Show less
2Cvsup
Sup
2Cvsup Mirror
Sup
Apr 16, 2026
Aug 27, 2003
N/A· v4
N/A· v3
4.6 MEDIUM· v2
sup 1.8 and earlier does not properly create temporary files, which allows local users to overwrite arbitrary files.