7.2
CVSSv2

CVE-1999-0845

Published: 25/11/1999 Updated: 17/08/2022
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in SCO su program allows local users to gain root access via a long username.

Vulnerable Product Search on Vulmon Subscribe to Product

sco unixware 7.0

Exploits

source: wwwsecurityfocuscom/bid/826/info Certain versions of Unixware ship with a version of su(1) which is vulnerable to a buffer overflow attack This attack is possible because su(1) fails to sanity check user supplied data, in this instance a username supplied on the command line Because su(1) is SUID root this attack may result in r ...