CVE-2000-0316

Solaris 7 - Local Buffer Overflow via Long -d Option

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2000-0316. PoCs published by DiGiT.

AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in the lp program on Solaris 2.7. It uses a crafted payload with shellcode to achieve arbitrary code execution as root via the -d option.

Description

Buffer overflow in Solaris 7 lp allows local users to gain root privileges via a long -d option.

Exploits (1)

exploitdb WORKING POC VERIFIED
by DiGiT · clocalsolaris
https://www.exploit-db.com/exploits/19878

This exploit targets a buffer overflow vulnerability in the lp program on Solaris 2.7. It uses a crafted payload with shellcode to achieve arbitrary code execution as root via the -d option.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Solaris 2.7 /usr/bin/lp
No auth needed
Prerequisites: Access to the target system · Ability to execute /usr/bin/lp
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/1143
Third Party Advisory mailing-list x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2000-04/0191.html

Scores

EPSS 0.0086
EPSS Percentile 53.7%

Details

Status published
Products (2)
sun/solaris 7.0
sun/sunos 5.7
Published Apr 24, 2000
Tracked Since Feb 18, 2026