Back

CVE-2001-0869

Format string vulnerability in the default logging callback function _sasl_syslog in common.c in Cyrus SASL library (cyrus-sasl) may allow remote attackers to execute arbitrary commands.

Published: Dec 21, 2001 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (9)

Vendor Product Version
caldera openlinux_workstation 3.1
redhat linux_powertools 6.2
caldera openlinux_eserver 3.1
redhat linux 7.0
redhat linux 7.2
suse suse_linux 7.0
suse suse_linux 7.1
suse suse_linux 7.2
suse suse_linux 7.3

GitHub Security Advisory GHSA-qjxx-h2x5-mvmp

Format string vulnerability in the default logging callback function _sasl_syslog in common.c in...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 3.00%

Top 14% most likely to be exploited

Threat Score 30.9 / 100

Data Sources

NVD EPSS GitHub