Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2004-0850
Description:Star before 1.5_alpha46 does not drop the effective user ID (euid) before calling external programs, which could allow local users to gain privileges by modifying the RSH environment variable to reference a malicious program.
Test IDs: 1.3.6.1.4.1.25623.1.0.54668  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2004-0850
BugTraq ID: 11141
http://www.securityfocus.com/bid/11141
CERT/CC vulnerability note: VU#339089
http://www.kb.cert.org/vuls/id/339089
http://www.gentoo.org/security/en/glsa/glsa-200409-11.xml
http://securitytracker.com/id?1011195
XForce ISS Database: star-ssh-gain-privileges(17297)
https://exchange.xforce.ibmcloud.com/vulnerabilities/17297




© 1998-2025 E-Soft Inc. All rights reserved.