漏洞信息详情
KDocker未明漏洞
漏洞简介
kdocker 0.1至0.8版本的kdocker.cpp不能正确检查文件所有权。本地用户可以利用该漏洞执行任意程序。
漏洞公告
The vendor has released an upgrade to address this issue. kdocker kdocker 0.1
- kdocker kdocker-0.9 http://prdownloads.sourceforge.net/kdocker/kdocker-0.9.tar.gz?download
- kdocker kdocker-0.9 http://prdownloads.sourceforge.net/kdocker/kdocker-0.9.tar.gz?download
- kdocker kdocker-0.9 http://prdownloads.sourceforge.net/kdocker/kdocker-0.9.tar.gz?download
- kdocker kdocker-0.9 http://prdownloads.sourceforge.net/kdocker/kdocker-0.9.tar.gz?download
- kdocker kdocker-0.9 http://prdownloads.sourceforge.net/kdocker/kdocker-0.9.tar.gz?download
- kdocker kdocker-0.9 http://prdownloads.sourceforge.net/kdocker/kdocker-0.9.tar.gz?download
- kdocker kdocker-0.9 http://prdownloads.sourceforge.net/kdocker/kdocker-0.9.tar.gz?download
- kdocker kdocker-0.9 http://prdownloads.sourceforge.net/kdocker/kdocker-0.9.tar.gz?download
参考网址
来源: XF 名称: kdocker-kdockerccp-gain-privileges(17718) 链接:http://xforce.iss.net/xforce/xfdb/17718 来源: BID 名称: 11419 链接:http://www.securityfocus.com/bid/11419 来源: OSVDB 名称: 10729 链接:http://www.osvdb.org/10729 来源: sourceforge.net 链接:http://sourceforge.net/forum/forum.php?forum_id=414631 来源: SECTRACK 名称: 1011688 链接:http://securitytracker.com/id?1011688 来源: SECUNIA 名称: 12828 链接:http://secunia.com/advisories/12828 来源: cvs.sourceforge.net 链接:http://cvs.sourceforge.net/viewcvs.py/kdocker/kdocker/src/kdocker.cpp?r1=1.10&r2=1.11&sortby=log
受影响实体
- Kdocker Kdocker:0.1<!--2000-1-1-->
- Kdocker Kdocker:0.2<!--2000-1-1-->
- Kdocker Kdocker:0.3<!--2000-1-1-->
- Kdocker Kdocker:0.4<!--2000-1-1-->
- Kdocker Kdocker:0.5<!--2000-1-1-->
补丁
暂无
还没有评论,来说两句吧...