CVE
- Id
- 4948
- CVE No.
- CVE-2002-0557
- Status
- Candidate
- Description
- Vulnerability in OpenBSD 3.0, when using YP with netgroups in the password database, causes (1) rexec or (2) rsh to run another user"s shell, or (3) atrun to change to a different user"s directory, possibly due to memory allocation failures or an incorrect call to auth_approval().
- Phase
- Modified (20050310)
- Votes
- ACCEPT(4) Baker, Cole, Frech, Green | NOOP(3) Cox, Foat, Wall
- Comments