Multiple Vendor CDE dtmail/mailtool缓冲区溢出漏洞

漏洞信息详情

Multiple Vendor CDE dtmail/mailtool缓冲区溢出漏洞

漏洞简介

CDE邮件工具存在缓冲区溢出漏洞。本地用户可以通过一个长模拟内容类型获得根权限。

漏洞公告

A temporary solution is to remove the sgid bit from the affected binaries.
Patches are available to all Sun customers at
http://sunsolve.sun.com
Sun Solaris 7.0

  • Sun 107200-12

参考网址

来源: BID
名称: 832
链接:http://www.securityfocus.com/bid/832

来源: XF
名称: cde-mailtool-bo(3732)
链接:http://xforce.iss.net/xforce/xfdb/3732

来源: BUGTRAQ
名称: 19991129 Solaris7 dtmail/dtmailpr/mailtool Buffer Overflow
链接:http://www.security-express.com/archives/bugtraq/1999-q4/0122.html

来源: www.securiteam.com
链接:http://www.securiteam.com/exploits/3J5QQPPQ0O.html

受影响实体

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享