CVE-2003-1068: Buffer Overflow
Buffer overflow in utmpupdate for Solaris 2.6 through 9 allows local users to gain root privileges, as identified by Sun BugID 4659277, a different vulnerability than CVE-2003-1082.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Oracle Solaris (SunOS) utmp_updateto a version that resolves this vulnerability.Patch Sun BugID 4659277
Event History
Frequently Asked Questions
What is the severity of CVE-2003-1068?
CVE-2003-1068 is considered critical as it allows local users to gain root privileges through a buffer overflow.
How do I fix CVE-2003-1068?
To fix CVE-2003-1068, apply the latest patches provided by Oracle for affected Solaris versions.
Which versions of Solaris are affected by CVE-2003-1068?
CVE-2003-1068 affects Solaris 2.6 through 9, including specific versions like 5.7, 5.8, 7.0, 8.0, and 9.0.
Who is vulnerable to CVE-2003-1068?
Local users with access to the affected Solaris systems are vulnerable to CVE-2003-1068.
What type of vulnerability is CVE-2003-1068?
CVE-2003-1068 is a buffer overflow vulnerability that can lead to privilege escalation.