积极预防 及时发现
快速响应 力保恢复
用于Netscape 4.75及其早期版本的HTML 分析程序中的缓冲区溢出允许远程攻击者通过在表单...
发布时间:2001-01-09 信息来源:管理员

CNCVE编号:CNCVE-20001187 CVE编号:CVE-2000-1187 安全级别:高 漏洞中文描述: 用于Netscape 4.75及其早期版本的HTML 分析程序中的缓冲区溢出允许远程攻击者通过在表单域中的一个长口令来执行任意命令。 漏洞英文描述: Buffer overflow in the HTML parser for Netscape 4.75 and earlier allows remote attackers to execute arbitrary commands via a long password value in a form field. 漏洞参考: REDHAT:RHSA-2000:109-05 | URL:http://www.redhat.com/support/errata/RHSA-2000-109.html | CONECTIVA:CLSA-2000:344 | URL:http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000344 | SuSE-SA:2000:48 | URL:http://lists.suse.com/archiv 系统类型: Unix/Linux Win95/98/ME Win2000/NT 漏洞类型:输入有效性检查错误