Solaris libsldap Buffer Overflow...

- AV AC AU C I A
发布: 2001-06-26
修订: 2025-04-13

Solaris 8 ships with a shared library that implements LDAP functionality called 'libsldap'. This library is linked to by a number of system utilities, many of them installed setuid or setgid. Libsldap contains a buffer overflow vulnerability in it's handling of the 'LDAP_OPTIONS' environment variable. Local attackers can exploit this vulnerability in setuid/setgid programs linked to libsldap to elevate privileges.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息