Page 3 of 12 results (0.004 seconds)

CVSS: 4.6EPSS: 0%CPEs: 1EXPL: 0

nethack 3.4.0 and earlier installs certain setgid binaries with insecure permissions, which allows local users to gain privileges by replacing the original binaries with malicious code. nethack 3.4.0 y anteriores instala ciertos binarios con permisos inseguros, lo que permite a usuarios locales ganar privilegios. • http://www.debian.org/security/2003/dsa-316 •

CVSS: 4.6EPSS: 0%CPEs: 4EXPL: 5

Buffer overflow in (1) nethack 3.4.0 and earlier, and (2) falconseye 1.9.3 and earlier, which is based on nethack, allows local users to gain privileges via a long -s command line option. Desbordamiento de búfer en nethack 3.4.0 y anteriores permite que usuarios locales obtengan privilegios mediante la opción -s en la línea de comandos. • https://www.exploit-db.com/exploits/22233 https://www.exploit-db.com/exploits/22234 https://www.exploit-db.com/exploits/22235 https://github.com/fengjixuchui/CVE-2003-0358 http://nethack.sourceforge.net/v340/bugmore/secpatch.txt http://www.debian.org/security/2003/dsa-316 http://www.debian.org/security/2003/dsa-350 http://www.securityfocus.com/archive/1/311172/2003-02-08/2003-02-14/0 http://www.securityfocus.com/bid/6806 https://exchange.xforce.ibmcloud.com/vuln • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •