积极预防 及时发现
快速响应 力保恢复
Recourse ManTrap 1.6 建立了一个chroot环境来隐藏它的实际运行情况,但由此引...
发布时间:2001-01-09 信息来源:管理员

CNCVE编号:CNCVE-20001144 CVE编号:CVE-2000-1144 安全级别:中 漏洞中文描述: Recourse ManTrap 1.6 建立了一个chroot环境来隐藏它的实际运行情况,但由此引发的“/”文件系统的索引节数量比正常值高,这使得攻击者得以确定他们在chroot环境中。 漏洞英文描述: Recourse ManTrap 1.6 sets up a chroot environment to hide the fact that it is running, but the inode number for the resulting "/" file system is higher than normal, which allows attackers to determine that they are in a chroot environment. 漏洞参考: BUGTRAQ:20001102 Mantrap By Recourse Technologies - Fate Advisory (11-01-00) | URL:http://archives.neohapsis.com/archives/bugtraq/2000-11/0041.html | BUGTRAQ:20001107 Vendor Response Re: Mantrap Advisory Vendor Followup - Fate Research Labs | 系统类型:其他 漏洞类型:设计错误