mail in OpenBSD 2.9 and 3.0 processes a tilde (~) escape character in a message even when it is not in interactive mode, which could allow local users to gain root privileges via calls to mail in cron.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2003-04-02T05:00:00

Updated: 2024-08-08T02:56:37.079Z

Reserved: 2002-06-07T00:00:00

Link: CVE-2002-0542

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2002-07-03T04:00:00.000

Modified: 2016-10-18T02:20:33.870

Link: CVE-2002-0542

cve-icon Redhat

No data.