FreeBSD Orville-write 端口漏洞

漏洞信息详情

FreeBSD Orville-write 端口漏洞

漏洞简介

orville-write包中的huh程序存在缓冲区溢出漏洞,本地用户可以利用这个漏洞获得根用户权限。

漏洞公告

Versions of orville-write in the ports hierarchy since March 9, 2000 have not been vulnerable. FreeBSD 4.0-RELEASE is not vulnerable. New versions of this port are available at
ftp://ftp.FreeBSD.org/pub/FreeBSD/ports/i386/packages-3-stable/misc/orville-write-2.41a.tgz
ftp://ftp.FreeBSD.org/pub/FreeBSD/ports/i386/packages-4-current/misc/orville-write-2.41a.tgz
ftp://ftp.FreeBSD.org/pub/FreeBSD/ports/alpha/packages-4-current/misc/orville-write-2.41a.tgz
The FreeBSD port skeleton is available at
http://www.freebsd.org/ports

参考网址

来源: FREEBSD
名称: FreeBSD-SA-00:10
链接:ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:10-orville-write.asc

来源: BID
名称: 1070
链接:http://www.securityfocus.com/bid/1070

来源: OSVDB
名称: 1263
链接:http://www.osvdb.org/1263

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享