积极预防 及时发现
快速响应 力保恢复
Linux 系统上的modutils 2.3.x中的modprobe允许本地用户通过shell元字符...
发布时间:2001-01-09 信息来源:管理员

CNCVE编号:CNCVE-20001095 CVE编号:CVE-2000-1095 安全级别:高 漏洞中文描述: Linux 系统上的modutils 2.3.x中的modprobe允许本地用户通过shell元字符来执行任意命令。 漏洞英文描述: modprobe in the modutils 2.3.x package on Linux systems allows a local user to execute arbitrary commands via shell metacharacters. 漏洞参考: BUGTRAQ:20001112 RedHat 7.0 (and SuSE): modutils + netkit = root compromise. (fwd) | URL:http://archives.neohapsis.com/archives/bugtraq/2000-11/0179.html | SUSE:SuSE-SA:2000:44 | URL:http://archives.neohapsis.com/archives/linux/suse/2000-q4/05 系统类型:其他 漏洞类型:输入有效性检查错误