Exploitation Summary
EIP tracks 2 public exploits for CVE-2001-0595. PoCs published by Last Stage of Delirium.
AI-analyzed exploit summary This exploit targets a buffer overflow in the Kodak Color Management System's 'kcms_configure' tool via the KCMS_PROFILES environment variable. It leverages a setuid root binary to execute arbitrary shellcode, granting root privileges on Solaris x86 systems.
Description
Buffer overflow in the kcsSUNWIOsolf.so library in Solaris 7 and 8 allows local attackers to execute arbitrary commands via the KCMS_PROFILES environment variable, e.g. as demonstrated using the kcms_configure program.
Exploits (2)
This exploit targets a buffer overflow in the Kodak Color Management System's 'kcms_configure' tool via the KCMS_PROFILES environment variable. It leverages a setuid root binary to execute arbitrary shellcode, granting root privileges on Solaris x86 systems.
This exploit targets a buffer overflow in the Kodak Color Management System's 'kcms_configure' tool via the KCMS_PROFILES environment variable. It leverages a setuid root binary to execute arbitrary code as root on Solaris SPARC systems.