Heap-based buffer overflow in main.c of slocate 2.6, and possibly other versions, may allow local users to gain privileges via a modified slocate database that causes a negative "pathlen" value to be used.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
slocate slocate 2.1 |
||
slocate slocate 2.4 |
||
slocate slocate 2.5 |
||
slocate slocate 2.6 |
||
slocate slocate 2.2 |
||
slocate slocate 2.3 |