4.6
CVSSv2

CVE-1999-1483

Published: 19/06/1997 Updated: 05/09/2008
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 465
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in zgv in svgalib 1.2.10 and previous versions allows local users to execute arbitrary code via a long HOME environment variable.

Vulnerable Product Search on Vulmon Subscribe to Product

svgalib svgalib

Exploits

/* * * zgv exploit coded by BeastMaster V on June 20, 1997 * * USAGE: * For some strage reason, the filename length of this * particular exploit must me one character long, otherwise you * will be drop into a normal unpriviledged shell Go Figure * * $ cp zgv_exploitc nc * $ cc -o n nc * $ /n * Oak driver: Unknown ...