RSS   Vulnerabilities for 'Tcpflow'   RSS

2003-08-27
 
CVE-2003-0671

 

 
Format string vulnerability in tcpflow, when used in a setuid context, allows local users to execute arbitrary code via the device name argument, as demonstrated in Sustworks IPNetSentryX and IPNetMonitorX the setuid program RunTCPFlow.

 


Copyright 2024, cxsecurity.com

 

Back to Top