openbsd.libutil...

- AV AC AU C I A
发布: 2000-10-04
修订: 2025-04-13

OpenBSD Advisories - There is a format string vulnerability present in the pw_error() function of OpenBSD 2.7's libutil library can yield localhost users root access through the setuid /usr/bin/chpass utility. Affected versions: OpenBSD versions through 2.7. FreeBSD 4.0 is vulnerable, but patches have been backported, and FreeBSD versions 4.1 and 4.1.1 are safe.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息