CVE-2001-0594
Solaris 7 and 8 - Local Privilege Escalation via kcms_configure Command Line Argument Buffer Overflow
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2001-0594. PoCs published by Adam Slattery, Riley Hassell.
AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in the setuid root binary `kcms_configure` on Solaris 7/8. It leverages a command-line argument overflow to execute arbitrary shellcode, achieving root privilege escalation on SPARC architectures.
Description
kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privileges via a buffer overflow in a command line argument.
Exploits (2)
This exploit targets a buffer overflow vulnerability in the setuid root binary `kcms_configure` on Solaris 7/8. It leverages a command-line argument overflow to execute arbitrary shellcode, achieving root privilege escalation on SPARC architectures.
This exploit targets a buffer overflow vulnerability in Kodak Color Management System's kcms_configure (CVE-2001-0594) on Solaris 7/8. It uses a command-line argument overflow to execute arbitrary shellcode with root privileges via a setuid binary.