BSD Nvi Format String Vulnerability...

- AV AC AU C I A
发布: 2001-10-20
修订: 2025-04-13

Nvi is an implementation of the vi text editor. English and multilingual versions of Nvi are prone to format string attacks. This is due to insufficient validation of externally supplied data to the routine that handles saved filenames. This issue has not been proven to be exploitable. However, if it can be exploited then it may be possible for the local attacker to execute arbitrary code and potentially elevate privileges on the host.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息