vendor:
Solaris
by:
Marco Ivaldi
7,2
CVSS
HIGH
Information Leak
N/A
CWE
Product Name: Solaris
Affected Version From: Solaris 8
Affected Version To: Solaris 9
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: SPARC, x86
2006
raptor_ucbps – information leak with Solaris /usr/ucb/ps
A security vulnerability in the "/usr/ucb/ps" (see ps(1B)) command may allow unprivileged local users the ability to see environment variables and their values for processes which belong to other users (Sun Alert ID: 102215).
Mitigation:
Apply the relevant patches for the vulnerable platforms.