Buffer overflow in cfingerd 1.4.3 and earlier with the ALLOW_LINE_PARSING option enabled allows local users to execute arbitrary code via a long line in the .nofinger file.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/2914 | exploit vdb entry patch vendor advisory |
http://www.debian.org/security/2001/dsa-066 | patch vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/6744 | vdb entry |
http://www.securityfocus.com/archive/1/01071120191900.00788%40localhost.localdomain | mailing list |
http://www.securityfocus.com/archive/1/192844 | mailing list patch vendor advisory |