First published: Thu Mar 07 2002(Updated: )
Buffer overflow in admintool in Solaris 2.5 through 8 allows local users to gain root privileges via long arguments to (1) the -d command line option, or (2) the PRODVERS argument in the .cdtoc file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Solaris SPARC | =8.0 | |
Sun SunOS | =5.7 | |
Sun SunOS | =5.5 | |
Sun SunOS | =5.5.1 | |
Oracle Solaris SPARC | =2.6 | |
Oracle Solaris SPARC | =8.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-0089 is considered to have a high severity due to potential local escalation of privileges to root.
To fix CVE-2002-0089, upgrade to a unaffected version of Solaris or apply appropriate patches as recommended by the vendor.
CVE-2002-0089 affects local users of Solaris 2.5 through 8 running the admintool.
CVE-2002-0089 is classified as a buffer overflow vulnerability.
CVE-2002-0089 cannot be exploited remotely; it requires local access to the system.