First published: Thu Aug 02 2001(Updated: )
kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privileges via a buffer overflow in a command line argument.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sun SunOS | =5.7 | |
Sun SunOS | =5.8 | |
Oracle Solaris SPARC | =7.0 | |
Oracle Solaris SPARC | =8.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0594 is considered to have a high severity due to its potential to allow local attackers to gain additional privileges.
To fix CVE-2001-0594, it is recommended to apply security patches for Solaris 7 and 8 or upgrade to a non-vulnerable version.
CVE-2001-0594 affects Solaris 7 and 8 on SPARC and x86 platforms, specifically versions 5.7 and 5.8.
CVE-2001-0594 is a buffer overflow vulnerability that arises from improper handling of command line arguments.
Local users on affected Solaris systems are primarily impacted by CVE-2001-0594 due to the privilege escalation capability.