7.2
CVSSv2

CVE-1999-1489

Published: 04/03/1997 Updated: 05/09/2008
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in TestChip function in XFree86 SuperProbe in Slackware Linux 3.1 allows local users to gain root privileges via a long -nopr argument.

Vulnerable Product Search on Vulmon Subscribe to Product

slackware slackware linux 3.1

Exploits

/* source: wwwsecurityfocuscom/bid/364/info superprobe is an program supplied with XFree86 that helps determine video hardware It is shipped with Slackware Linux 31 and is installed setuid root There is an exploitable strcpy buffer overflow in the TestChip() function which allows for a trivial local root compromise */ /* * SuperProbe ...