7.2
CVSSv2

CVE-1999-0321

Published: 01/12/1998 Updated: 17/08/2022
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 730
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in Solaris kcms_configure command allows local users to gain root access.

Vulnerable Product Search on Vulmon Subscribe to Product

sun solaris

Exploits

source: wwwsecurityfocuscom/bid/452/info There is an unchecked sprintf() call in the versions of /usr/openwin/bin/kcms_configure shipped with solaris 25, 251 and 26 Unfortunately, kcms_configure is installed setuid root, making it possible for an attacker to overflow the buffer and have arbitrary code executed with superuser privile ...
/* source: wwwsecurityfocuscom/bid/452/info There is an unchecked sprintf() call in the versions of /usr/openwin/bin/kcms_configure shipped with solaris 25, 251 and 26 Unfortunately, kcms_configure is installed setuid root, making it possible for an attacker to overflow the buffer and have arbitrary code executed with superuser priv ...