CNCVE编号:CNCVE-20000949 CVE编号:CVE-2000-0949 安全级别:高 漏洞中文描述: 用在LBNL traceroute 1.4a5及其早期版本中的savestr函数中的堆溢出导致本地用户通过-g选项,执行任意命令。 漏洞英文描述: Heap overflow in savestr function in LBNL traceroute 1.4a5 and earlier allows a local user to execute arbitrary commands via the -g option. 漏洞参考: BUGTRAQ:20000928 Very interesting traceroute flaw | URL:http://archives.neohapsis.com/archives/bugtraq/2000-09/0344.html | CALDERA:CSSA-2000-034.0 | URL:http://www.calderasystems.com/support/security/advisories/CSSA-2000-034.0.txt | MANDRA 系统类型:其他 漏洞类型:输入有效性检查错误