The dhcp.client program for QNX 4.25 vmware is setuid, possibly by default, which allows local users to modify the NIC configuration and conduct other attacks.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/15785 | vdb entry |
http://secunia.com/advisories/17870 | third party advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/23543 | vdb entry |
http://www.securityfocus.com/archive/1/418513/100/0/threaded | mailing list |