iss.01-10-02.ttdbserverd...

- AV AC AU C I A
发布: 2001-10-04
修订: 2025-04-13

ISS Security Advisory - A format string vulnerability has been found in the tooltalk service (rpc.ttdbserverd) on multiple versions of HP-UX, IBM AIX, IRIX, DG-UX, and Solaris. ToolTalk contains a "syslog()" call that will interpret user-supplied formatting arguments. This call is insecure and allows remote attackers to control formatting and manipulate data at arbitrary locations in the memory of the running executable.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息