CNCVE编号:CNCVE-20000901 CVE编号:CVE-2000-0901 安全级别:中 漏洞中文描述: screen 3.9.5及其早期版本中的格式化字符串漏洞导致本地用户可以通过在vbell_msg初始化变量中格式化字符串从而获得root权限。 漏洞英文描述: Format string vulnerability in screen 3.9.5 and earlier allows local users to gain root privileges via format characters in the vbell_msg initialization variable. 漏洞参考: BUGTRAQ:20000906 Screen-3.7.6 local compromise | URL:http://archives.neohapsis.com/archives/bugtraq/2000-08/0530.html | BUGTRAQ:20000905 screen 3.9.5 root vulnerability | URL:http://www.securityfocus.com/archive/1/80178 | DEBIAN:20000902 s 系统类型:其他 漏洞类型:输入有效性检查错误