Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

BSD/OS UUCP Argument Buffer Overflow Vulnerability

UUCP is the Unix-to-Unix Copy Protocol infrastructure, implmented with numerous Unix and Unix clone operating systems. This problem affects the BSD/OS implementation.

uucp does not correctly check bounds on arguments supplied to the uucp program when executed. Because of this, it is possible for a local user to supply an arbitrarily long string to uucp upon execution, and overwrite variables on the stack. This make it possible for a local user to execute code with the privileges of uucp.

This problem makes it possible for local users to gain elevated privileges, and could lead to further compromise of a vulnerable host.







 

Privacy Statement
Copyright 2009, SecurityFocus