Record summary

CVE-2001-0652 has a selected CVSS score of 7.2; EIP currently links 2 catalogued exploits.

Description

Heap overflow in xlock in Solaris 2.6 through 8 allows local users to gain root privileges via a long (1) XFILESEARCHPATH or (2) XUSERFILESEARCHPATH environmental variable.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
2

Proofs of concept

2

Catalogued exploits

ExploitDBSolaris 2.6/7/8 (SPARC) - xlock Heap OverflowExploitDB exploitby NsfocusNot analyzed1 file
ExploitDB

PoC details
ExploitDBSolaris 8 - x86 xlock Heap OverflowExploitDB exploitby NsfocusNot analyzed1 file
ExploitDB

PoC details

References

6