Directory traversal vulnerability in priocntl system call in Solaris does allows local users to execute arbitrary code via ".." sequences in the pc_clname field of a pcinfo_t structure, which cause priocntl to load a malicious kernel module.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
sun sunos 5.7 |
||
sun solaris 7.0 |
||
sun sunos 5.8 |
||
sun solaris 8.0 |
||
sun sunos 5.5.1 |
||
sun solaris 2.6 |
||
sun solaris 9.0 |