Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in tt_printf function of rxvt 2.6.2 allows local users to gain privileges via a long (1) -T or (2) -name argument.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Rxvt 本地缓冲区溢出漏洞
Vulnerability Description
CVE(CAN) ID: CAN-2001-1077 Rxvt是一个彩色VT102中断仿真程序,可以作为xterm的替代软件。 rxvt存在一个缓冲区溢出漏洞。如果给它的某些命令行选项("-T"或者"-name")提供超长 的参数,就会触发缓冲区溢出。rxvt在某些系统下被设置了setgid utmp属性,本地攻击 者可能利用这个漏洞来获取utmp组权限。 有问题的代码在tt_printf()函数: void tt_printf(const char *fmt,...) { int i; va_list
CVSS Information
N/A
Vulnerability Type
N/A