3.6
CVSSv2

CVE-1999-0828

Published: 02/12/1999 Updated: 09/09/2008
CVSS v2 Base Score: 3.6 | Impact Score: 4.9 | Exploitability Score: 3.9
VMScore: 375
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

UnixWare pkg commands such as pkginfo, pkgcat, and pkgparam allow local users to read arbitrary files via the dacread permission.

Vulnerable Product Search on Vulmon Subscribe to Product

sco unixware 7.0

sco unixware 7.1

Exploits

source: wwwsecurityfocuscom/bid/850/info Certain versions of SCO's Unixware (only version 71 was tested) ship with a series of package install/removal utilities which due to design issues under the SCO UnixWare operating system may read any file on the system regardless of their permission set This is due to the package commands (pkginf ...
source: wwwsecurityfocuscom/bid/853/info It is possible to view the entries in /etc/shadow through exploiting a buffer overflow in pkgcat and pkginstall Though neither of these binaries are setuid, the dacread permissions which are granted in /etc/security/tcb/privs give them the ability read /etc/shadow When the oversized buffer data i ...
source: wwwsecurityfocuscom/bid/853/info It is possible to view the entries in /etc/shadow through exploiting a buffer overflow in pkgcat and pkginstall Though neither of these binaries are setuid, the dacread permissions which are granted in /etc/security/tcb/privs give them the ability read /etc/shadow When the oversized buffer data ...