CNCVE编号:CNCVE-20010609 CVE编号:CAN-2001-0609 安全级别:高 漏洞中文描述: Infodrom cfingerd 1.4.3 及其早期版本中的目录遍历漏洞允许远程攻击者通过一个传到syslog函数的畸形ident响应来获得额外的权限。 漏洞英文描述: Format string vulnerability in Infodrom cfingerd 1.4.3 and earlier allows a remote attacker to gain additional privileges via a malformed ident reply that is passed to the syslog function. 漏洞参考: Reference: BUGTRAQ:20010411 CFINGERD remote vulnerability Reference: URL:http://archives.neohapsis.com/archives/bugtraq/2001-04/0202.html Reference: DEBIAN:DSA-048 Reference: URL:http://www.debian.org/security/2001/dsa-048 Reference: BID:2576 Referen 系统类型:其他 漏洞类型:输入有效性检查错误