CVE-2003-0092: Buffer Overflow
Published Apr 1, 2003
·Updated
Heap-based buffer overflow in dtsession for Solaris 2.5.1 through Solaris 9 allows local users to gain root privileges via a long HOME environment variable.
Affected Software
5 affected components
Sun SunOS=5.7
Sun SunOS=5.8
Sun Solaris=9.0
Sun SunOS=5.5.1
Sun Solaris=2.6
Remediation
Event History
Apr 1, 2003
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Apr 2, 2003
Data Sourced
via NVD·05:00 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2003-0092?
CVE-2003-0092 is considered a critical vulnerability due to the potential for local users to gain root privileges.
2
How do I fix CVE-2003-0092?
To resolve CVE-2003-0092, you should limit the length of the HOME environment variable or apply updates from the vendor.
3
Which systems are affected by CVE-2003-0092?
CVE-2003-0092 affects Solaris versions 2.5.1 through 9, including various SunOS versions.
4
What type of vulnerability is CVE-2003-0092?
CVE-2003-0092 is a heap-based buffer overflow vulnerability.
5
Can CVE-2003-0092 be exploited remotely?
CVE-2003-0092 cannot be exploited remotely as it requires local access to the system.