20030605 BAZARR LOCAL ROOT AGAIN. HI GUYS. DONT READ THISmailing list
http://marc.info/?l=bugtraq&m=105491469815197&w=2 CVE-2003-0385
Xaos 3.0 - Language Option Local Buffer Overflow
Record summary
CVE-2003-0385 has a selected CVSS score of 7.2; EIP currently links 1 catalogued exploit.
Description
Buffer overflow in xaos 3.0-23 and earlier, when running setuid, allows local users to gain root privileges via a long -language option.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBXaos 3.0 - Language Option Local Buffer OverflowExploitDB exploitby bazarr@ziplip.comNot analyzed1 file
References
3DSA-310Vendor advisory
http://www.debian.org/security/2003/dsa-310 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2003-0385