20020628 efstool local root exploitmailing list
http://online.securityfocus.com/archive/1/279676 CVE-2002-1814
Mandrake 7/8/9 / RedHat 6.x/7 Bonobo EFSTool - Commandline Argument Buffer Overflow (1)
Record summary
CVE-2002-1814 has a selected CVSS score of 4.6; EIP currently links 3 catalogued exploits.
Description
Buffer overflow in efstools in Bonobo, when installed setuid, allows local users to execute arbitrary code via long command line arguments.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 3
Proofs of concept
3Catalogued exploits
ExploitDBMandrake 7/8/9 / RedHat 6.x/7 Bonobo EFSTool - Commandline Argument Buffer Overflow (1)ExploitDB exploitby cloroxNot analyzed1 file
ExploitDBMandrake 7/8/9 / RedHat 6.x/7 Bonobo EFSTool - Commandline Argument Buffer Overflow (2)ExploitDB exploitby andrea lisciNot analyzed1 file
ExploitDBMandrake 7/8/9 / RedHat 6.x/7 Bonobo EFSTool - Commandline Argument Buffer Overflow (3)ExploitDB exploitby N4rK07IXNot analyzed1 file
References
5linux-efstool-bo(9451)vdb entry
http://www.iss.net/security_center/static/9451.php securiteam.com
http://www.securiteam.com/exploits/5AP0E0K8AO.html 5125vdb entry
http://www.securityfocus.com/bid/5125 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2002-1814