Unrated severityNVD Advisory· Published Dec 31, 2005· Updated Apr 16, 2026
CVE-2005-3538
CVE-2005-3538
Description
hfaxd in HylaFAX 4.2.3, when PAM support is disabled, accepts arbitrary passwords, which allows remote attackers to gain privileges.
Affected products
1- cpe:2.3:a:ifax_solutions:hylafax:4.2.3:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
11- bugs.hylafax.org/bugzilla/show_bug.cginvdPatch
- secunia.com/advisories/18314nvdPatchVendor Advisory
- secunia.com/advisories/18337nvdPatchVendor Advisory
- www.gentoo.org/security/en/glsa/glsa-200601-03.xmlnvdPatch
- www.securityfocus.com/bid/16150nvdPatch
- secunia.com/advisories/18489nvd
- www.hylafax.org/archive/2005-12/msg00119.phpnvd
- www.hylafax.org/content/HylaFAX_4.2.4_releasenvd
- www.mandriva.com/security/advisoriesnvd
- www.securityfocus.com/archive/1/420974/100/0/threadednvd
- www.vupen.com/english/advisories/2006/0072nvd
News mentions
0No linked articles in our index yet.