First published: Wed Aug 23 2006(Updated: )
Unspecified vulnerability in the format command in Sun Solaris 8 and 9 before 20060821 allows local users to modify arbitrary files via unspecified vectors involving profiles that permit running format with elevated privileges, a different issue than CVE-2006-4306 and CVE-2006-4319.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Solaris SPARC | =8.0 | |
Oracle Solaris SPARC | =9.0 | |
Oracle Solaris SPARC | =9.0 | |
Sun SunOS | =5.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-4307 has been classified as a vulnerability that allows local users to modify arbitrary files, potentially leading to significant security risks.
To mitigate CVE-2006-4307, users should ensure that the format command is not granted elevated privileges to untrusted profiles.
CVE-2006-4307 affects local users of Sun Solaris 8 and 9 systems who have access to profiles allowing elevated privileges.
The affected systems for CVE-2006-4307 include Sun Solaris 8, Solaris 9 on both SPARC and x86 architectures.
Yes, CVE-2006-4307 is a known vulnerability that has been documented and reported in security advisories.