7.2
CVSSv2

CVE-2005-3503

Published: 05/11/2005 Updated: 19/10/2018
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

chfn in pwdutils 3.0.4 and previous versions on SuSE Linux, and possibly other operating systems, does not properly check arguments for the GECOS field, which allows local users to gain privileges.

Vulnerable Product Search on Vulmon Subscribe to Product

pwdutils pwdutils

Exploits

#!/bin/sh # # Exploit for SuSE Linux 9{1,2,3}/100, Desktop 10, UnitedLinux 10 # and SuSE Linux Enterprise Server {8,9} 'chfn' local root bug # # by Hunger <susechfn@hungerhu> # # Advistory: # listssusecom/archive/suse-security-announce/2005-Nov/0002html # # hunger@suse:~> id # uid=1000(hunger) gid=1000(hunger) groups=1000 ...