Buffer overflow in the report function in xtacacsd 4.1.2 and earlier allows remote attackers to execute arbitrary code via a crafted CONNECT TACACS command.Referenceshttp://aluigi.org/poc/xtacacsdz.ziphttp://aluigi.altervista.org/adv/xtacacsdz-adv.txthttps://exchange.xforce.ibmcloud.com/vulnerabilities/39551