Vulnerabilities > CVE-2003-0092 - Buffer Overflow vulnerability in SUN Solaris and Sunos

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
sun

Summary

Heap-based buffer overflow in dtsession for Solaris 2.5.1 through Solaris 9 allows local users to gain root privileges via a long HOME environment variable.

Vulnerable Configurations

Part Description Count
OS
Sun
5

Oval

accepted2005-03-09T07:56:00.000-04:00
classvulnerability
contributors
nameBrian Soby
organizationThe MITRE Corporation
descriptionHeap-based buffer overflow in dtsession for Solaris 2.5.1 through Solaris 9 allows local users to gain root privileges via a long HOME environment variable.
familyunix
idoval:org.mitre.oval:def:1905
statusaccepted
submitted2005-02-01T12:00:00.000-04:00
titledtsession Buffer Overflow via HOME Envvar
version35