Solaris SSP SNMPD Argument Buffer...

- AV AC AU C I A
发布: 2001-03-13
修订: 2025-04-13

Solaris is the Unix Operating System variant distributed and maintained by Sun Microsystems. Solaris is a freely available operating system designed to run on systems of varying size with maximum scalability. A problem with the SNMP Daemon included in the SUNWsspop package results in a buffer overflow, and potentially the execution of arbitrary code. Upon parsing the argv[0] variable from the command line, this information is stored in a static buffer. The static buffer is vulnerable to being overflowed at 700 bytes of data. This vulnerability is only present on systems acting as the System Service Processor for an E10000, or on any system with the SUNWsspop package installed. This problem makes it possible to overwrite memory space of the running process, and potentially execute code with the inherited privileges of root.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息