vendor:
Solaris
by:
UNYUN
7.2
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Solaris
Affected Version From: CDE 1.2 and CDE 1.3
Affected Version To: Solaris 2.6 and Solaris 7
Patch Exists: YES
Related CWE: Sun Bug# 4139394
CPE: o:sun:solaris:2.6
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Intel x86
1999
Buffer Overflow in dtprintinfo
A stack based buffer overflow in the handling of the "-p" option of the dtprintinfo command allows the execution of arbitrary code as root. This vulnerability is in the CDE 1.2 and CDE 1.3 subsystem of Solaris 2.6 and Solaris 7 respectively. Before executing the ex_dtprintinfo exploit, the DISPLAY environment variable must be set correctly and a dummy lpstat command must be created.
Mitigation:
Upgrade to the latest version of the software