Stack-based buffer overflow in the command_Expand_Interpret function in command.c in ppp (aka user-ppp), as distributed in FreeBSD 6.3 and 7.0, OpenBSD 4.1 and 4.2, and the net/userppp package for NetBSD, allows local users to gain privileges via long commands containing "~" characters.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://secunia.com/advisories/29238 | third party advisory vendor advisory |
http://www.openbsd.org/errata42.html#009_ppp | vendor advisory |
http://www.securityfocus.com/archive/82/488980/30/0/threaded | exploit mailing list |
http://www.openbsd.org/errata41.html#014_ppp | vendor advisory |
http://www.securityfocus.com/archive/82/489031/30/0/threaded | exploit mailing list |
http://www.securityfocus.com/bid/28090 | vdb entry exploit |
https://exchange.xforce.ibmcloud.com/vulnerabilities/41034 | vdb entry |
http://secunia.com/advisories/29234 | third party advisory vendor advisory |
http://secunia.com/advisories/29240 | third party advisory vendor advisory |