suse.ncurses.txt...

- AV AC AU C I A
发布: 2000-10-28
修订: 2025-04-13

SuSE Security Advisory - A vulnerability has been found in the ncurses library, which is used by many text based applications. Insufficient boundary checking leads to a buffer overflow if a user supplies a specially drafted terminfo database file. If an ncurses-linked binary is installed setuid root, it is possible for a local attacker to exploit this hole and gain local root access. SuSE recommends patching this vulnerability by removing the SUID bits from xaos, screen, and cda.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息