漏洞信息详情
Big Brother bbd.c缓冲区溢出漏洞
漏洞简介
Big Brother System和Network Monitor中bbd服务器存在漏洞。攻击者利用此漏洞可以执行任意命令。
漏洞公告
From a message to Bugtraq on July 16, 2000 by Loki Solution: Required only on hosts that are defined as BBDISPLAY. Don't forget hosts that were at one point BBDISPLAY but were turned into a client only host afterwards. 1) If you have BBLOGSTATUS=DYNAMIC set in etc/bbdef.sh, then download BB 1.4h2 and extract bb-hostsvc.sh. Replace the script in the cgi-bin and set the BBHOME variable in the bb-hostsvc.sh script. Make sure the script has the proper permissions. 2) If you have BBLOGSTATUS=STATIC or BBLOGSTATUS=TEXT set in etc/bbdef.sh, then just remove the bb-hostsvc.sh from the cgi-bin directory as it is not required for these setups. 3) Set BBLOGSTATUS=STATIC in bbdef.sh and remove the script as described in 2).
参考网址
来源: BID 名称: 1257 链接:http://www.securityfocus.com/bid/1257 来源: BUGTRAQ 名称: 20000518 FW: Security Notice: Big Brother System and Network Monitor 链接:http://archives.neohapsis.com/archives/bugtraq/2000-05/0216.html
受影响实体
- Sean_macguire Big_brother:1.3b<!--2000-1-1-->
- Sean_macguire Big_brother:1.4<!--2000-1-1-->
- Sean_macguire Big_brother:1.4g<!--2000-1-1-->
- Sean_macguire Big_brother:1.4h1<!--2000-1-1-->
补丁
暂无
还没有评论,来说两句吧...