跳转到帖子

Alpine Linux: CVE-2023-24809: Classic Buffer Overflow

recommended_posts

发布于
  • Members

Alpine Linux: CVE-2023-24809: Classic Buffer Overflow

Severity
5
CVSS
(AV:L/AC:L/Au:S/C:N/I:N/A:C)
Published
02/17/2023
Created
08/23/2024
Added
08/22/2024
Modified
10/02/2024

Description

NetHack is a single player dungeon exploration game. Starting with version 3.6.2 and prior to version 3.6.7, illegal input to the "C" (call) command can cause a buffer overflow and crash the NetHack process. This vulnerability may be a security issue for systems that have NetHack installed suid/sgid and for shared systems. For all systems, it may result in a process crash. This issue is resolved in NetHack 3.6.7. There are no known workarounds.

Solution(s)

  • alpine-linux-upgrade-nethack

References

  • https://attackerkb.com/topics/cve-2023-24809
  • CVE - 2023-24809
  • https://security.alpinelinux.org/vuln/CVE-2023-24809
  • 查看数 721
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。

游客
回帖…