Canna远程缓冲区溢出漏洞

漏洞信息详情

Canna远程缓冲区溢出漏洞

漏洞简介

Canna输入系统存在缓冲区溢出漏洞。远程攻击者可以借助带有超长用户名或群组名的SR_INIT命令执行任意命令。

漏洞公告

Information with regards to how to obtain fixes for Debian was published in the attached advisory (Debian-00-012: New version of canna released). The fix links provided in the advisory are no longer available.
FreeBSD has released a Security Notice FreeBSD-SN-02:05. Users of FreeBSD
systems are strongly urged to upgrade their ports tree to fix various
reported issues. Further information can be found in the referenced
Security Notice. This advisory supercedes the previous advisory (FreeBSD-SA-00:31).

参考网址

来源: XF
名称: canna-bin-execute-bo
链接:http://xforce.iss.net/static/4912.php

来源: FREEBSD
名称: FreeBSD-SA-00:31
链接:ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:31.canna.asc.v1.1

来源: shadowpenguin.backsection.net
链接:http://shadowpenguin.backsection.net/advisories/advisory038.html

来源: BID
名称: 1445
链接:http://www.securityfocus.com/bid/1445

受影响实体

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享