积极预防 及时发现
快速响应 力保恢复
SunOS 4.1.3以及早期版本中的/usr/5bin/su使用包括当前工作目录(.)的搜寻路径,...
发布时间:2002-05-20 信息来源:管理员

CNCVE编号:CNCVE-19991318 CVE编号:CVE-1999-1318 安全级别:中 漏洞中文描述: SunOS 4.1.3以及早期版本中的/usr/5bin/su使用包括当前工作目录(.)的搜寻路径,这允许本地用户通过特洛伊木马程序得到权限。 漏洞英文描述: /usr/5bin/su in SunOS 4.1.3 and earlier uses a search path that includes the current working directory (.), which allows local users to gain privileges via Trojan horse programs. 漏洞参考: 系统类型:其他 漏洞类型:其他