积极预防 及时发现
快速响应 力保恢复
加密文件系统(Cryptographic File System)是一个运行于Unix类系统上的一个...
发布时间:2002-03-11 信息来源:管理员

CNCVE编号:CNCVE-20020016 CVE编号: 安全级别:高 漏洞中文描述: 加密文件系统(Cryptographic File System)是一个运行于Unix类系统上的一个文件系统加密软件包.CFS实现上存在多个缓冲区溢出漏洞,远程攻击者可能利用这些漏洞对程序实施拒绝服务攻击或在主机上以root身份执行任意命令。 漏洞英文描述: Cryptographic File System (CFS) for Unix is a file system encryption package. Versions prior to 1.3.3-8.1 are vulnerable to a number of buffer overflow issues. Whether or not these are exploitable to obtain privileges on the host is unknown at the present time. They can be used to initiate a denial of service condition against the encrypted file system, however. 漏洞参考: http://www.crypto.com/papers/cfs.pdf http://www.debian.org/security/2002/dsa-116 系统类型:其他 漏洞类型:缓冲区溢出