{"id":"CVE-2013-2131","details":"Format string vulnerability in the rrdtool module 1.4.7 for Python, as used in Zenoss, allows context-dependent attackers to cause a denial of service (crash) via format string specifiers to the rrdtool.graph function.","modified":"2026-04-10T03:43:20.687583Z","published":"2015-01-04T21:59:00Z","related":["SUSE-SU-2017:0103-1","openSUSE-SU-2024:10163-1"],"references":[{"type":"FIX","url":"https://github.com/oetiker/rrdtool-1.x/pull/397"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=969296"},{"type":"REPORT","url":"https://github.com/oetiker/rrdtool-1.x/issues/396"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2013/04/18/5"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2013/05/19/5"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2013/05/31/2"}],"schema_version":"1.7.5"}