Rxvt Buffer Overflow Vulnerability
BID:2878
Info
Rxvt Buffer Overflow Vulnerability
| Bugtraq ID: | 2878 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2001-1077 |
| Remote: | No |
| Local: | Yes |
| Published: | Jun 15 2001 12:00AM |
| Updated: | Jul 11 2009 06:56AM |
| Credit: | Reported to Bugtraq by Samuel "Zorgon" Dralet <[email protected]> on June 15, 2001. |
| Vulnerable: |
rxvt rxvt 2.6.2 rxvt rxvt 2.6.1 |
| Not Vulnerable: |
Mandriva Linux Mandrake 8.0 Mandriva Linux Mandrake 7.2 Mandriva Linux Mandrake 7.1 Mandriva Linux Mandrake 7.0 Mandriva Linux Mandrake 6.1 Mandriva Linux Mandrake 6.0 |
Discussion
Rxvt Buffer Overflow Vulnerability
Rxvt is a color VT102 terminal emulator for X intended as an xterm(1) replacement.
A buffer overflow vulnerability exists in rxvt.
The error occurs when certain command line options with long arguments are passed to rxvt.
Because rxvt is installed setgid 'utmp' by some system configurations, it may be possible for local users to execute arbitrary code/commands with these privileges.
Rxvt is a color VT102 terminal emulator for X intended as an xterm(1) replacement.
A buffer overflow vulnerability exists in rxvt.
The error occurs when certain command line options with long arguments are passed to rxvt.
Because rxvt is installed setgid 'utmp' by some system configurations, it may be possible for local users to execute arbitrary code/commands with these privileges.
Exploit / POC
Rxvt Buffer Overflow Vulnerability
Samuel "Zorgon" Dralet <[email protected]> has made an exploit available:
Samuel "Zorgon" Dralet <[email protected]> has made an exploit available: