积极预防 及时发现
快速响应 力保恢复
Solaris 7和9中的kcsSUNWIOsolf.so库的缓冲区溢出允许本地攻击者通过例如kcm...
发布时间:2001-08-02 信息来源:管理员

CNCVE编号:CNCVE-20010595 CVE编号:CAN-2001-0595 安全级别:中 漏洞中文描述: Solaris 7和9中的kcsSUNWIOsolf.so库的缓冲区溢出允许本地攻击者通过例如kcms_configure程序里的kcms_configure.as参数等KCMS_PROFILES环境变量的设置来执行任意命令。 漏洞英文描述: Buffer overflow in the kcsSUNWIOsolf.so library in Solaris 7 and 8 allows local attackers to execute arbitrary commands via the KCMS_PROFILES environmental variable, e.g. in the kcms_configure program.as with the kcms_configure program. 漏洞参考: Reference: BUGTRAQ:20010411 Solaris kcsSUNWIOsolf.so and dtsession vulnerabilities Reference: URL:http://archives.neohapsis.com/archives/bugtraq/2001-04/0203.html Reference: XF:solaris-kcssunwiosolf-bo(6365) Reference: URL:http://xforce.iss.net/s 系统类型:其他 漏洞类型:输入有效性检查错误