vendor:
xterm
by:
DCRH
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: xterm
Affected Version From: X11R6.3 xterm on Solaris 5.5.1
Affected Version To: X11R6.3 xterm on Solaris 5.5.1
Patch Exists: NO
Related CWE:
CPE: a:sun:xterm:5.5.1
Platforms Tested: Solaris 5.5.1
1997
X11R6.3 xterm exploit for solaris 5.5.1
This exploit targets the X11R6.3 xterm program on Solaris 5.5.1. It takes advantage of a buffer overflow vulnerability to execute arbitrary code. The exploit contains a shellcode that sets up a shell with root privileges.
Mitigation:
The vulnerability can be mitigated by patching the xterm program to fix the buffer overflow issue.