20020730 The SUPER Bugmailing list
http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0045.html CVE-2002-0817
William Deich Super 3.x - SysLog Format String
Record summary
CVE-2002-0817 has a selected CVSS score of 7.2; EIP currently links 1 catalogued exploit.
Description
Format string vulnerability in super for Linux allows local users to gain root privileges via a long command line argument.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBWilliam Deich Super 3.x - SysLog Format StringExploitDB exploitby gobblesNot analyzed1 file
References
620020731 The SUPER Bugmailing list
http://marc.info/?l=bugtraq&m=102812622416695&w=2 DSA-139Vendor advisory
http://www.debian.org/security/2002/dsa-139 super-syslog-format-string(9741)vdb entry
http://www.iss.net/security_center/static/9741.php 5367vdb entry
http://www.securityfocus.com/bid/5367 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2002-0817