FreeBSD Security Advisory 2002.23...

- AV AC AU C I A
发布: 2002-04-25
修订: 2025-04-13

FreeBSD Security Advisory FreeBSD-SA-02:23 - Setuid or setgid applications can be used for privilege elevation due to insecure handling of stdio file descriptors on FreeBSD releases up to and including 4.5-RELEASE. It is known that the 'keyinit' set-user-id program is exploitable using this method. This vulnerability was discovered by Joost Pol.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息