vendor:
N/A
by:
Brock Tellier
7.2
CVSS
HIGH
Buffer Overflow
120 (Buffer Copy without Checking Size of Input)
CWE
Product Name: N/A
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux x86
2000
Buffer Overflow Vulnerability in sscw’s Handling of the HOME Environment Variable
A buffer overflow vulnerability in sscw's handling of the HOME environment variable allows local users to gain root privileges. An exploit code is provided which builds two C programs in /tmp, sccwx.c and sccwuid.c. The sccwx.c program sets the HOME environment variable to a buffer of NOP instructions and the address of the sccwuid.c program. The sccwuid.c program sets the user ID to the effective user ID and launches a root shell. The exploit code then launches the sccwx program.
Mitigation:
Upgrade to the latest version of sscw.