PT-2008-6230 · Htop+1 · Htop+1

Steven M. Christey

·

Publicado

2008-11-14

·

Atualizado

2023-10-06

·

CVE-2008-5076

CVSS v2.0

4.6

Média

VetorAV:L/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions htop version 0.7
Description The issue allows local users to potentially hide processes, modify arbitrary files, or have unspecified other impact by utilizing a process name that contains non-printable characters, referred to as "crazy control strings."
Recommendations For htop version 0.7, consider updating to a newer version that addresses this issue, as the current version may allow malicious process names to cause unintended consequences. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Information Disclosure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2014-2037
ALT-PU-2023-6111
CVE-2008-5076

Produtos afetados

Alt Linux
Htop