Releases87
Frequency2 months 4 weeks
Last Release
Stars1.1K
RRDtool 1.x - Round Robin Database

CVE History

CVEPublishedCVSS v3CVSS v2
7.5 HIGH5 MEDIUM

Multiple format string vulnerabilities in the python module in RRDtool, as used in Zenoss Core before 4.2.5 and other products, allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted third argument to the rrdtool.graph function, aka ZEN-15415, a related issue to CVE-2013-2131.

5 MEDIUM

Format string vulnerability in the rrdtool module 1.4.7 for Python, as used in Zenoss, allows context-dependent attackers to cause a denial of service (crash) via format string specifiers to the rrdtool.graph function.