KDbg任意命令执行漏洞

漏洞信息详情

KDbg任意命令执行漏洞

漏洞简介

Kdbg 1.1.0至1.2.8版本不能检查.kdbgrc文件许可。本地用户可以利用该漏洞执行任意命令。

漏洞公告

The vendor has addressed this issue in KDbg version 1.2.9 and later.
RedHat Linux has released advisory RHSA-2005:416-04 addressing this issue for RedHat Enterprise Linux and Advanced Workstation for the Itanium Processor. Please see the referenced advisory for further information.
KDbg KDbg 1.1

KDbg KDbg 1.2

KDbg KDbg 1.2.1

KDbg KDbg 1.2.2

KDbg KDbg 1.2.3

KDbg KDbg 1.2.4

KDbg KDbg 1.2.5

KDbg KDbg 1.2.6

KDbg KDbg 1.2.7

KDbg KDbg 1.2.8

参考网址

来源: lists.kde.org
链接:http://lists.kde.org/?l=kde-announce&m=106296509815092&w=2

来源: MLIST
名称: [debian-devel-changes] 20030909 Accepted kdbg 1.2.9-1 (i386 source)
链接:http://lists.debian.org/debian-devel-changes/2003/09/msg00767.html

来源: REDHAT
名称: RHSA-2005:416
链接:http://www.redhat.com/support/errata/RHSA-2005-416.html

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享