Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in su in Tru64 Unix 5.x allows local users to gain root privileges via a long username and argument.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Tru64 SU程序本地缓冲区溢出漏洞
Vulnerability Description
Tru64是一款由HP公司开发的UNIX操作系统。 Tru64中的su程序在处理用户提交的命令行参数时缺少正确的检查,本地攻击者可以利用这个漏洞进行缓冲区溢出攻击。 Tru64中的su程序默认以SUID ROOT属性安装,由于对用户提交的命令行参数缺少正确检查,攻击者提交超长字符串作为命令行参数可导致su处理时产生缓冲区溢出,精心构建提交的字符串数据可以使攻击者以root用户的权限在系统上执行任意指令。
CVSS Information
N/A
Vulnerability Type
N/A