Description: SuSE has reported a vulnerability in HylaFAX, which can be exploited by malicious people to compromise a vulnerable system.
The vulnerability is caused due to a format string error in hfaxd, which can be exploited to execute arbitrary code.
Successful exploitation requires that hylafax is running in a non-standard configuration with the 0x002 bit for the "ServerTracing" configuration parameter.
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.