CNCVE编号:CNCVE-20001125 CVE编号:CAN-2000-1125 安全级别:高 漏洞中文描述: redhat linux 6.2中的restore 0.4b15及其早期版本信任由RSH环境变量指定的路径名,这允许本地用户通过把RSH变量改成指定一个特洛伊木马程序来获得root权限。 漏洞英文描述: restore 0.4b15 and earlier in Red Hat Linux 6.2 trusts the pathname specified by the RSH environmental variable, which allows local users to obtain root privileges by modifying the RSH variable to point to a Trojan horse program. 漏洞参考: BUGTRAQ:20001104 Redhat 6.2 restore exploit | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=97336034309944&w=2 | BID:1914 | URL:http://www.securityfocus.com/bid/1914 系统类型:其他 漏洞类型:权限有效性检查错误