PT-1999-1803 · Sun · Sun Solaris
Publicado
1999-12-31
·
Atualizado
2018-10-30
·
CVE-1999-1585
CVSS v2.0
7.2
Alta
| Vetor | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
Sun Solaris versions 2.x, possibly before 2.4
Description:
The issue concerns the rcS and mountall programs in Sun Solaris. If fsck fails during the boot process, these programs start a privileged shell on the system console. This allows attackers with physical access to the system to gain root privileges.
Recommendations:
For Sun Solaris versions 2.x, possibly before 2.4, consider restricting physical access to the system to minimize the risk of exploitation. As a temporary workaround, ensure that fsck runs successfully during boot to prevent the privileged shell from starting. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Sun Solaris