Linux cdrecord 缓冲区溢出漏洞

漏洞信息详情

Linux cdrecord 缓冲区溢出漏洞

漏洞简介

Linux cdrecord存在缓冲区溢出漏洞。本地用户借助dev参数可以提升特权。

漏洞公告

To upgrade automatically, use ? MandrakeUpdate ?. If you want to upgrade manually, download the updated package from one of the FTP server mirrors and uprade with “rpm -Uvh package_name”. All mirrors are listed on
http://www.mandrake.com/en/ftp.php3 Updated packages are available in the “updates/” directory.
For example, if you are looking for an updated RPM package for Mandrake 7.0, look for it in: updates/7.0/RPMS/
MandrakeSoft Linux Mandrake 7.0

参考网址

来源: BID
名称: 1265
链接:http://www.securityfocus.com/bid/1265

来源: BUGTRAQ
名称: 20000607 Conectiva Linux Security Announcement – cdrecord
链接:http://archives.neohapsis.com/archives/bugtraq/2000-06/0019.html

来源: BUGTRAQ
名称: 20000603 [Gael Duval ] [Security Announce] cdrecord
链接:http://archives.neohapsis.com/archives/bugtraq/2000-05/0434.html

来源: BUGTRAQ
名称: 20000527 Mandrake 7.0: /usr/bin/cdrecord gid=80 (strike #2)
链接:http://archives.neohapsis.com/archives/bugtraq/2000-05/0367.html

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享