漏洞描述: 有很多的安全攻击漏洞 1)在分析font.alias文件中有两个缓存溢出问题。 2)另外还有在读取字体文件时的漏洞 漏洞存在平台: Red Hat Linux 9 Red Hat Enterprise Linux AS, ES, WS (v.3) Red Hat Enterprise Linux AS, ES, WS (v.2.1) Red Hat Linux Advanced Workstation 2.1 for the Itanium Processor SGI ProPack v2.4 and v2.3 for the Altix family of systems Debian GNU/Linux 3.0(woody) 破坏程度: 一个本地的攻击者可以展开攻击漏洞来手动创建文件而获得根权限。 解决方案: 安装安全补丁。 危险系数评估:中级