漏洞信息详情
Multiple Vendor CDE dtmail/mailtool缓冲区溢出漏洞
漏洞简介
CDE邮件工具存在缓冲区溢出漏洞。本地用户可以通过一个长模拟内容类型获得根权限。
漏洞公告
A temporary solution is to remove the sgid bit from the affected binaries. Patches are available to all Sun customers at http://sunsolve.sun.com Sun Solaris 7.0
- Sun 107200-12
参考网址
来源: BID 名称: 832 链接:http://www.securityfocus.com/bid/832 来源: XF 名称: cde-mailtool-bo(3732) 链接:http://xforce.iss.net/xforce/xfdb/3732 来源: BUGTRAQ 名称: 19991129 Solaris7 dtmail/dtmailpr/mailtool Buffer Overflow 链接:http://www.security-express.com/archives/bugtraq/1999-q4/0122.html 来源: www.securiteam.com 链接:http://www.securiteam.com/exploits/3J5QQPPQ0O.html
受影响实体
- Sun Solaris:7.0<!--2000-1-1-->
- Sun Sunos:5.7<!--2000-1-1-->
补丁
暂无
还没有评论,来说两句吧...