First published: Mon Dec 31 2001(Updated: )
pt_chmod in Solaris 8 does not call fdetach to reset terminal privileges when users log out of terminals, which allows local users to write to other users' terminals by modifying the ACL of a TTY.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sun SunOS | =5.8 | |
Oracle Solaris SPARC | =8.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-1555 is considered a moderate severity vulnerability due to potential unauthorized access to user terminals.
To fix CVE-2001-1555, update to a patched version of Solaris that addresses the terminal privilege reset issue.
CVE-2001-1555 affects local users of Solaris 8 who can potentially manipulate terminal privileges.
CVE-2001-1555 allows local users to write to other users' terminals due to inadequate resetting of terminal privileges.
While CVE-2001-1555 pertains to older Solaris versions, it highlights historical security practices that may inform current vulnerabilities.