Whois Client Command Line Buffer...

- AV AC AU C I A
发布: 2003-08-22
修订: 2025-04-13

Whois client is prone to a buffer overrun vulnerability when handling command line parameters of excessive length. While the client is not setuid/setgid, it is often invoked in external scripts. This could present a security vulnerability if the program is invoked with untrusted input, such as via a CGI script. It should be noted that the affected function never returns after execution. This may hinder an attacker's ability to exploit this issue to execute arbitrary code.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息