LWN.net Logo

osh: buffer overflows

Package(s):osh CVE #(s):
Created:June 20, 2003 Updated:June 24, 2003
Description: Steve Kemp discovered that osh, a shell intended to restrict the actions of the user, contains two buffer overflows, in processing environment variables and file redirections. These vulnerabilities could be used to execute arbitrary code, overriding any restrictions placed on the shell.
Alerts:
Debian DSA-329-1 2003-06-20

(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds