积极预防 及时发现
快速响应 力保恢复
OpenBSD,NetBSD及可能其它基于BSD的操作系统的eeprom 程序中存在格式化字符串漏洞...
发布时间:2000-12-19 信息来源:管理员

CNCVE编号:CNCVE-20000997 CVE编号:CAN-2000-0997 安全级别:高 漏洞中文描述: OpenBSD,NetBSD及可能其它基于BSD的操作系统的eeprom 程序中存在格式化字符串漏洞,这导致本地攻击者可以获得root权限。 漏洞英文描述: Format string vulnerabilities in eeprom program in OpenBSD, NetBSD, and possibly other operating systems allows local attackers to gain root privileges. 漏洞参考: OPENBSD:20001006 There are printf-style format string bugs in several privileged programs. | MISC:ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/028_format_strings.patch | BID:1752 | URL:http://www.securityfocus.com/bid/1752 | XF:bs 系统类型:其他 漏洞类型:输入有效性检查错误