ex_kcms_configure86.c...

- AV AC AU C I A
发布: 1999-11-25
修订: 2025-04-13

kcms_configure has a overflow bug with "-P" option and it has been reported(107339-01). But this program has another hole. This hole has not been not reported, and the paches are not published at this time. kcms_configure overflows if long string is specified in NETPATH environment, and it is exploitable. I have included an exploit for Solaris7 intel edition to obtain root privilege.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息