CNCVE编号:CNCVE-20000996 CVE编号:CVE-2000-0996 安全级别:高 漏洞中文描述: OpenBSD su 程序 (及可能其它基于BSD的操作系统) 中存在格式化字符串漏洞,导致本地攻击者可通过一个畸形shell来获得root权限。 漏洞英文描述: Format string vulnerability in OpenBSD su program (and possibly other BSD-based operating systems) allows local attackers to gain root privileges via a malformed shell. 漏洞参考: OPENBSD:20001006 There are printf-style format string bugs in several privileged programs. | MISC:ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/028_format_strings.patch 系统类型:其他 漏洞类型:其他