漏洞信息详情
BSD mailx 8.1.1-10缓冲区溢出漏洞
- CNNVD编号:CNNVD-200008-002
- 危害等级: 中危
- CVE编号:
CVE-2000-0545
- 漏洞类型:
缓冲区溢出
- 发布时间:
2000-08-08
- 威胁类型:
本地
- 更新时间:
2005-10-20
- 厂 商:
sgi - 漏洞来源:
Exploit posted to … -
漏洞简介
Linux系统中的mailx邮件命令(又称为Mail)存在缓冲区溢出漏洞。本地用户借助超长-c (carbon副本)参数提升特权。
漏洞公告
The following patch was designed specifically for mailx 8.1.1-10 distributed with Debian, but should work on other distributions as well.
Caldera has released packages that fix the vulnerability.
BSD mailx 8.1.1 -10
-
Caldera OpenLinux 2.3 mailx-8.1.1-12OL.i386.rpm
ftp://ftp.calderasystems.com/pub/updates/OpenLinux/2.3/current/RPMS/ma
ilx-8.1.1-12OL.i386.rpm -
Debian deb-mailx.patch
http://www.securityfocus.com/data/vulnerabilities/patches/deb-mailx.pa
tch
参考网址
来源: BID
名称: 1305
链接:http://www.securityfocus.com/bid/1305
来源: DEBIAN
名称: 20000605 mailx: mail group exploit in mailx
链接:http://www.debian.org/security/2000/20000605
来源: BUGTRAQ
名称: 20000602 /usr/bin/Mail exploit for Slackware 7.0 (mail-slack.c)
链接:http://archives.neohapsis.com/archives/bugtraq/2000-05/0435.html
© 版权声明
文章版权归作者所有,未经允许请勿转载。
THE END