PT-2001-1882 · Sun · Sunos

Published

2001-09-20

·

Updated

2018-10-30

·

CVE-2001-0699

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: SunOS version 5.8
Description: A buffer overflow issue exists in the cb reset function within the System Service Processor (SSP) package. This allows a local user to execute arbitrary code by providing a long argument to the vulnerable function.
Recommendations: For SunOS version 5.8, consider restricting access to the cb reset function in the SSP package to prevent potential exploitation until a fix is available. As a temporary workaround, avoid using long arguments with the cb reset function to minimize the risk of triggering the buffer overflow.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2001-0699

Affected Products

Sunos