CVE-2001-0423: Buffer Overflow
Published Jul 2, 2001
·Updated
Buffer overflow in ipcs in Solaris 7 x86 allows local users to execute arbitrary code via a long TZ (timezone) environmental variable, a different vulnerability than CAN-2002-0093.
Affected Software
1 affected component
Sun Solaris=7.0
Remediation
Patch Available
Event History
Jul 2, 2001
CVE Published
04:00 AM
Sep 1, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0423?
CVE-2001-0423 has a critical severity rating due to its potential for local users to execute arbitrary code.
2
How do I fix CVE-2001-0423?
To fix CVE-2001-0423, it is recommended to limit or sanitize the TZ environmental variable to prevent buffer overflow.
3
Which software is affected by CVE-2001-0423?
CVE-2001-0423 affects Solaris 7 x86 systems.
4
Who is impacted by CVE-2001-0423?
Local users with access to the Solaris 7 x86 environment may be impacted by CVE-2001-0423.
5
What type of vulnerability is CVE-2001-0423?
CVE-2001-0423 is a buffer overflow vulnerability.