vendor:
BitchX
by:
Sha0
7.5
CVSS
HIGH
Local root exploit
CWE
Product Name: BitchX
Affected Version From: BitchX version 1.0c19 and earlier
Affected Version To: BitchX version 1.0c19
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2004
BitchX local-root by Sha0
This exploit allows local users to gain root access on systems running BitchX version 1.0c19 and earlier. It utilizes a buffer overflow vulnerability to overwrite the return address and execute arbitrary code.
Mitigation:
Update BitchX to a version that is not vulnerable to this exploit.