Summary
| Detail | |||
|---|---|---|---|
| Vendor | Tolis Group | First view | 2000-06-05 |
| Product | Bru | Last view | 2003-08-18 |
| Version | 16.0 | Type | Application |
| Update | * | ||
| Edition | * | ||
| Language | * | ||
| Sofware Edition | * | ||
| Target Software | * | ||
| Target Hardware | * | ||
| Other | * | ||
| CPE Product | cpe:2.3:a:tolis_group:bru | ||
Activity : Overall
Related : CVE
| Date | Alert | Description | |
|---|---|---|---|
| 7.2 | 2003-08-18 | CVE-2003-0584 | Format string vulnerability in Backup and Restore Utility for Unix (BRU) 17.0 and earlier, when running setuid, allows local users to execute arbitrary code via format string specifiers in a command line argument. |
| 7.2 | 2003-08-18 | CVE-2003-0583 | Buffer overflow in Backup and Restore Utility for Unix (BRU) 17.0 and earlier, when running setuid, allows local users to execute arbitrary code via a long command line argument. |
| 7.2 | 2000-06-05 | CVE-2000-0537 | BRU backup software allows local users to append data to arbitrary files by specifying an alternate configuration file with the BRUEXECLOG environmental variable. |
Open Source Vulnerability Database (OSVDB)
| id | Description |
|---|---|
| 11785 | BRU Command Line Argument Format String Local Privilege Escalation |
| 2324 | BRU Long Command Line Local Overflow |
| 1385 | BRU BRUEXECLOG Variable Arbitrary File Modification |







