7.2
CVE-2005-3503
- EPSS 2.84%
- Veröffentlicht 05.11.2005 11:02:00
- Zuletzt bearbeitet 16.06.2026 22:17:05
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
chfn in pwdutils 3.0.4 and earlier on SuSE Linux, and possibly other operating systems, does not properly check arguments for the GECOS field, which allows local users to gain privileges.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.84% | 0.848 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.2 | 3.9 | 10 |
AV:L/AC:L/Au:N/C:C/I:C/A:C
|
http://secunia.com/advisories/17469
http://www.osvdb.org/20525
http://www.securityfocus.com/archive/1/415725/30/0/threaded
http://www.securityfocus.com/bid/15314