积极预防 及时发现
快速响应 力保恢复
OpenBSD yp_passwd 程序 (及可能其它基于BSD的操作系统) 中存在格式化字符串漏洞...
发布时间:2000-12-19 信息来源:管理员

CNCVE编号:CNCVE-20000995 CVE编号:CVE-2000-0995 安全级别:高 漏洞中文描述: OpenBSD yp_passwd 程序 (及可能其它基于BSD的操作系统) 中存在格式化字符串漏洞,导致攻击者可通过变形的命名来获得root权限。 漏洞英文描述: Format string vulnerability in OpenBSD yp_passwd program (and possibly other BSD-based operating systems) allows attackers to gain root privileges a malformed name. 漏洞参考: OPENBSD:20001006 There are printf-style format string bugs in several privileged programs. | MISC:ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/028_format_strings.patch 系统类型:其他 漏洞类型:其他