CNCVE编号:CNCVE-20010441 CVE编号:CAN-2001-0441 安全级别:高 漏洞中文描述: slrn news reader在0.9.7.0中的wrapping和unwrapping功能中有缓冲区溢出允许远程攻击者通过长的信息报头来执行任意命令。 漏洞英文描述: Buffer overflow in (1) wrapping and (2) unwrapping functions of slrn news reader before 0.9.7.0 allows remote attackers to execute arbitrary commands via a long message header. 漏洞参考: Reference: DEBIAN:DSA-040 Reference: URL:http://www.debian.org/security/2001/dsa-040 Reference: MANDRAKE:MDKSA-2001:028 Reference: URL:http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-028.php3 Reference: CONECTIVA:CLA-2001:383 Reference: 系统类型:其他 漏洞类型:输入有效性检查错误