VYPR

Luxman

by Frank Mcingvale

CVEs (2)

  • CVE-2005-0385May 2, 2005
    risk 0.03cvss epss 0.01

    Buffer overflow in luxman before 0.41, if used with certain insecure svgalib libraries, allows local users to execute arbitrary code via a long -f command line argument.

  • CVE-2002-1245Nov 12, 2002
    risk 0.00cvss epss 0.00

    Maped in LuxMan 0.41 uses the user-provided search path to find and execute the gzip program, which allows local users to modify /dev/mem and gain privileges via a modified PATH environment variable that points to a Trojan horse gzip program.