20000602 /usr/bin/Mail exploit for Slackware 7.0 (mail-slack.c)mailing list
http://archives.neohapsis.com/archives/bugtraq/2000-05/0435.html CVE-2000-0545
BSD 'mailx' 8.1.1-10 - Local Buffer Overflow (1)
Record summary
CVE-2000-0545 has a selected CVSS score of 4.6; EIP currently links 2 catalogued exploits.
Description
Buffer overflow in mailx mail command (aka Mail) on Linux systems allows local users to gain privileges via a long -c (carbon copy) parameter.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 2
Proofs of concept
2Catalogued exploits
ExploitDBBSD 'mailx' 8.1.1-10 - Local Buffer Overflow (1)ExploitDB exploitby Paulo RibeiroNot analyzed1 file
ExploitDBmailx 8.1.1-10 (BSD/Slackware) - Local Buffer Overflow (2)ExploitDB exploitby funkyshNot analyzed1 file
References
420000605 mailx: mail group exploit in mailxVendor advisory
http://www.debian.org/security/2000/20000605 1305vdb entry
http://www.securityfocus.com/bid/1305 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2000-0545