Vulnerabilities > CVE-1999-1158 - Unspecified vulnerability in SUN Sunos

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
sun
exploit available

Summary

Buffer overflow in (1) pluggable authentication module (PAM) on Solaris 2.5.1 and 2.5 and (2) unix_scheme in Solaris 2.4 and 2.3 allows local users to gain root privileges via programs that use these modules such as passwd, yppasswd, and nispasswd.

Vulnerable Configurations

Part Description Count
OS
Sun
4

Exploit-Db

  • descriptionSun Solaris 2.5.1 PAM & unix_scheme Vulnerability. CVE-1999-1158. Local exploit for solaris platform
    idEDB-ID:19158
    last seen2016-02-02
    modified1997-02-25
    published1997-02-25
    reporterCristian Schipor
    sourcehttps://www.exploit-db.com/download/19158/
    titleSun Solaris <= 2.5.1 PAM & unix_scheme Vulnerability
  • descriptionSolaris 2.4 passwd, yppasswd, and nispasswd Overflow Exploits. CVE-1999-1158. Local exploit for solaris platform
    idEDB-ID:341
    last seen2016-01-31
    modified1997-07-12
    published1997-07-12
    reporterCristian Schipor
    sourcehttps://www.exploit-db.com/download/341/
    titleSolaris 2.4 - passwd & yppasswd & nispasswd Overflow Exploits