PT-2002-1176 · Oracle · Solaris
Published
2002-03-07
·
Updated
2018-10-30
·
CVE-2002-0089
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Solaris versions 2.5 through 8
Description
A buffer overflow issue exists in the admintool of Solaris, allowing local users to gain root privileges. This can be achieved by providing long arguments to either the -d command line option or the PRODVERS argument in the .cdtoc file.
Recommendations
For Solaris versions 2.5 through 8, update to a version that contains a fix for this issue to prevent local users from gaining root privileges via buffer overflow in admintool.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Solaris