ISDNRep Command Line Argument Local...

- AV AC AU C I A
发布: 2003-07-03
修订: 2025-04-13

isdnrep has been reported prone to a local command line argument buffer overflow vulnerability. The issue presents itself due do a lack of sufficient bounds checking performed on user-supplied data that is copied from the command line into a reserved internal memory buffer. It is possible for a local attacker to influence the execution flow of isdnrep and have arbitrary operation codes executed in the context of the vulnerable application. Exploitation could permit privilege escalation on systems where the application is installed setuid/setgid. It should be noted that although isdnrep version 4.56 has been reported vulnerable, other versions might also be vulnerable.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息