20010409 Solaris kcms_configure vulnerabilitymailing list
http://archives.neohapsis.com/archives/bugtraq/2001-04/0140.html CVE-2001-0594
Solaris 7/8 - 'kcms_configure' Command-Line Buffer Overflow (1)
Record summary
CVE-2001-0594 has a selected CVSS score of 4.6; EIP currently links 2 catalogued exploits.
Description
kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privileges via a buffer overflow in a command line argument.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 2
Proofs of concept
2Catalogued exploits
ExploitDBSolaris 7/8 - 'kcms_configure' Command-Line Buffer Overflow (1)ExploitDB exploitby Riley HassellNot analyzed1 file
ExploitDBSolaris 7/8 - 'kcms_configure' Command-Line Buffer Overflow (2)ExploitDB exploitby Adam SlatteryNot analyzed1 file
References
62558vdb entry
http://www.securityfocus.com/bid/2558 solaris-kcms-command-bo(6359)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/6359 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2001-0594 oval:org.mitre.oval:def:65vdb entrysignature
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A65 oval:org.mitre.oval:def:7vdb entrysignature
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7