Buffer overflow in setiathome for SETI@home 3.03, if installed setuid, could allow local users to execute arbitrary code via long command line options (1) socks_server, (2) socks_user, and (3) socks_passwd. NOTE: since the default configuration of setiathome is not setuid, perhaps this issue should not be included in CVE.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/vuln-dev/2001-q4/0662.html | Vendor Advisory |
Configurations
Information
Published : 2001-12-30 21:00
Updated : 2008-09-05 13:26
NVD link : CVE-2001-1553
Mitre link : CVE-2001-1553
JSON object : View
CWE
Products Affected
university_of_california
- seti_at_home