First published: Mon Oct 31 2022(Updated: )
** UNSUPPORTED WHEN ASSIGNED ** Oracle Solaris version 10 1/13, when using the Common Desktop Environment (CDE), is vulnerable to a privilege escalation vulnerability. A low privileged user can escalate to root by crafting a malicious printer and double clicking on the the crafted printer's icon.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Common Desktop Environment Project Common Desktop Environment | ||
Oracle Solaris | =10 | |
All of | ||
Common Desktop Environment Project Common Desktop Environment | ||
Oracle Solaris | =10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Oracle Solaris vulnerability is CVE-2022-43752.
The severity of CVE-2022-43752 is high with a severity value of 7.8.
Oracle Solaris version 10 1/13 is affected by CVE-2022-43752.
A low privileged user can exploit CVE-2022-43752 by crafting a malicious printer and double clicking on the crafted printer's icon.
Yes, there are references available for CVE-2022-43752. You can find them at the following links: [Reference 1](http://phrack.org/issues/70/13.html#article), [Reference 2](https://github.com/0xdea/exploits/blob/master/solaris/raptor_dtprintcheckdir_intel.c).