CVE-2003-0359
https://notcve.org/view.php?id=CVE-2003-0359
nethack 3.4.0 and earlier installs certain setgid binaries with insecure permissions, which allows local users to gain privileges by replacing the original binaries with malicious code. nethack 3.4.0 y anteriores instala ciertos binarios con permisos inseguros, lo que permite a usuarios locales ganar privilegios. • http://www.debian.org/security/2003/dsa-316 •
CVE-2003-0358 – Nethack 3 - Local Buffer Overflow
https://notcve.org/view.php?id=CVE-2003-0358
Buffer overflow in (1) nethack 3.4.0 and earlier, and (2) falconseye 1.9.3 and earlier, which is based on nethack, allows local users to gain privileges via a long -s command line option. Desbordamiento de búfer en nethack 3.4.0 y anteriores permite que usuarios locales obtengan privilegios mediante la opción -s en la línea de comandos. • https://www.exploit-db.com/exploits/22233 https://www.exploit-db.com/exploits/22234 https://www.exploit-db.com/exploits/22235 https://github.com/fengjixuchui/CVE-2003-0358 http://nethack.sourceforge.net/v340/bugmore/secpatch.txt http://www.debian.org/security/2003/dsa-316 http://www.debian.org/security/2003/dsa-350 http://www.securityfocus.com/archive/1/311172/2003-02-08/2003-02-14/0 http://www.securityfocus.com/bid/6806 https://exchange.xforce.ibmcloud.com/vuln • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •