Cfingerd GECOS Buffer Overflow Vulnerability
BID:651
Info
Cfingerd GECOS Buffer Overflow Vulnerability
| Bugtraq ID: | 651 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Sep 21 1999 12:00AM |
| Updated: | Sep 21 1999 12:00AM |
| Credit: | This vulnerability was found by Babcia Padlina Ltd <[email protected]>. |
| Vulnerable: |
Martin Schulze Cfingerd 1.4.2 |
| Not Vulnerable: | |
Discussion
Cfingerd GECOS Buffer Overflow Vulnerability
Under systems that allow the user to change his GECOS field from the password file and do not limit its length cfingerd is vulnerable to a local root (or nobody) buffer overflow.
By setting a carefully designed GECOS field it is possible to execute arbitrary code with root (or nobody ) privileges.
Under systems that allow the user to change his GECOS field from the password file and do not limit its length cfingerd is vulnerable to a local root (or nobody) buffer overflow.
By setting a carefully designed GECOS field it is possible to execute arbitrary code with root (or nobody ) privileges.
Exploit / POC
Cfingerd GECOS Buffer Overflow Vulnerability
Exploit available:
Exploit available:
Solution / Fix
Cfingerd GECOS Buffer Overflow Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
Cfingerd GECOS Buffer Overflow Vulnerability
References:
References: