High severity7.5NVD Advisory· Published Feb 12, 2020· Updated Jun 17, 2026
CVE-2014-6262
CVE-2014-6262
Description
Multiple format string vulnerabilities in the python module in RRDtool, as used in Zenoss Core before 4.2.5 and other products, allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted third argument to the rrdtool.graph function, aka ZEN-15415, a related issue to CVE-2013-2131.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- RRDtool/RRDtooldescription
- Range: <4.2.5
Patches
Vulnerability mechanics
References
8- github.com/oetiker/rrdtool-1.x/commit/64ed5314af1255ab6dded45f70b39cdeab5ae2ecnvdPatchThird Party Advisory
- github.com/oetiker/rrdtool-1.x/commit/85261a013112e278c90224033f5b0592ee387786nvdPatchThird Party Advisory
- www.kb.cert.org/vuls/id/449452nvdThird Party AdvisoryUS Government Resource
- docs.google.com/spreadsheets/d/1dHAc4PxUbs-4Dxzm1wSCE0sMz5UCMY6SW3PlMHSyuuQ/editnvdThird Party Advisory
- github.com/oetiker/rrdtool-1.x/pull/532nvdThird Party Advisory
- lists.debian.org/debian-lts-announce/2020/03/msg00000.htmlnvdMailing ListThird Party Advisory
- lists.debian.org/debian-lts-announce/2020/03/msg00003.htmlnvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/71540nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.