Vulnerabilities > CVE-2001-1076 - Buffer Overflow vulnerability in SUN Solaris and Sunos

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
sun
exploit available

Summary

Buffer overflow in whodo in Solaris SunOS 5.5.1 through 5.8 allows local users to execute arbitrary code via a long (1) SOR or (2) CFIME environment variable.

Exploit-Db

descriptionSolaris 2.6/2.6/7.0/8 whodo Buffer Overflow Vulnerability. CVE-2001-1076 . Local exploit for solaris platform
idEDB-ID:20974
last seen2016-02-02
modified2001-06-01
published2001-06-01
reporterPablo Sor
sourcehttps://www.exploit-db.com/download/20974/
titleSolaris 2.6/2.6/7.0/8 whodo Buffer Overflow Vulnerability

Oval

  • accepted2007-02-20T13:40:20.231-05:00
    classvulnerability
    contributors
    • nameDavid Proulx
      organizationThe MITRE Corporation
    • nameMatthew Wojcik
      organizationThe MITRE Corporation
    • nameMatthew Wojcik
      organizationThe MITRE Corporation
    • nameMatthew Wojcik
      organizationThe MITRE Corporation
    • nameMatthew Wojcik
      organizationThe MITRE Corporation
    descriptionBuffer overflow in whodo in Solaris SunOS 5.5.1 through 5.8 allows local users to execute arbitrary code via a long (1) SOR or (2) CFIME environment variable.
    familyunix
    idoval:org.mitre.oval:def:34
    statusaccepted
    submitted2002-10-17T12:00:00.000-04:00
    titleSolaris 7 whodo Buffer Overflow Vulnerability
    version34
  • accepted2007-02-20T13:40:36.167-05:00
    classvulnerability
    contributors
    • nameDavid Proulx
      organizationThe MITRE Corporation
    • nameMatthew Wojcik
      organizationThe MITRE Corporation
    • nameMatthew Wojcik
      organizationThe MITRE Corporation
    • nameMatthew Wojcik
      organizationThe MITRE Corporation
    • nameMatthew Wojcik
      organizationThe MITRE Corporation
    descriptionBuffer overflow in whodo in Solaris SunOS 5.5.1 through 5.8 allows local users to execute arbitrary code via a long (1) SOR or (2) CFIME environment variable.
    familyunix
    idoval:org.mitre.oval:def:47
    statusaccepted
    submitted2002-09-17T12:00:00.000-04:00
    titleSolaris 8 whodo Buffer Overflow Vulnerability
    version35