First published: Thu Aug 02 2001(Updated: )
Buffer overflow in the kcsSUNWIOsolf.so library in Solaris 7 and 8 allows local attackers to execute arbitrary commands via the KCMS_PROFILES environment variable, e.g. as demonstrated using the kcms_configure program.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sun SunOS | =5.7 | |
Sun SunOS | =5.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0595 is considered a high severity vulnerability due to the potential for local attackers to execute arbitrary commands.
To fix CVE-2001-0595, ensure you apply the latest patches provided by Sun for Solaris 7 and 8.
CVE-2001-0595 affects users of Solaris 7 and 8 systems specifically.
Attackers can exploit CVE-2001-0595 to execute arbitrary commands on affected Solaris systems.
CVE-2001-0595 was disclosed in April 2001.