Exploit GNOME Eye Of Gnome 1.0.x/1.1.x/2.2 - Format String

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
22376
Проверка EDB
  1. Пройдено
Автор
CORE SECURITY
Тип уязвимости
LOCAL
Платформа
LINUX
CVE
cve-2003-0165
Дата публикации
2003-03-28
Код:
source: https://www.securityfocus.com/bid/7121/info

GNOME Eye of Gnome (EOG) image viewer is prone to a format string vulnerability. This condition may lead to execution of arbitrary code if malicious format specifiers are supplied to the program via the command line. As some utilities may be configured to invoke EOG as the handler for images through a mailcap entry, this may allow for local privilege escalation or possibly remote exploitation.

$ /usr/bin/eog this_is_an_invalid_file_%n%n
 
Источник
www.exploit-db.com

Похожие темы