Lucene search

K
suseSuseSUSE-SA:2002:003
HistoryJan 16, 2002 - 3:44 p.m.

local privilege escalation in at

2002-01-1615:44:14
lists.opensuse.org
49

0.0004 Low

EPSS

Percentile

0.4%

The ‘at’ command reads commands from standard input for execution at a later time specified on the command line. If such an execution time is given in a carefully drafted (but wrong) format, the at command may crash as a result of a surplus call to free(). The cause of the crash is a heap corruption that is exploitable under certain circumstances since the /usr/bin/at command is installed setuid root.

0.0004 Low

EPSS

Percentile

0.4%

Related for SUSE-SA:2002:003