CNCVE编号:CNCVE-20010595 CVE编号:CAN-2001-0595 安全级别:中 漏洞中文描述: Solaris 7和9中的kcsSUNWIOsolf.so库的缓冲区溢出允许本地攻击者通过例如kcms_configure程序里的kcms_configure.as参数等KCMS_PROFILES环境变量的设置来执行任意命令。 漏洞英文描述: Buffer overflow in the kcsSUNWIOsolf.so library in Solaris 7 and 8 allows local attackers to execute arbitrary commands via the KCMS_PROFILES environmental variable, e.g. in the kcms_configure program.as with the kcms_configure program. 漏洞参考: Reference: BUGTRAQ:20010411