chfn in pwdutils 3.0.4 and earlier on SuSE Linux, and possibly other operating systems, does not properly check arguments for the GECOS field, which allows local users to gain privileges.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2005-11-05T11:00:00

Updated: 2024-08-07T23:17:22.718Z

Reserved: 2005-11-05T00:00:00

Link: CVE-2005-3503

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2005-11-05T11:02:00.000

Modified: 2018-10-19T15:36:48.767

Link: CVE-2005-3503

cve-icon Redhat

No data.