CVE-2001-0855
ClearCase <= 4.2 - Buffer Overflow via TERM Environment Variable
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2001-0855. PoCs published by virtualcat.
AI-analyzed exploit summary This exploit targets a buffer overflow in Rational ClearCase's db_loader via the TERM environment variable, allowing local privilege escalation to root. It uses shellcode to spawn a shell and calculates the return address dynamically.
Description
Buffer overflow in db_loader in ClearCase 4.2 and earlier allows local users to gain root privileges via a long TERM environment variable.
Exploits (1)
This exploit targets a buffer overflow in Rational ClearCase's db_loader via the TERM environment variable, allowing local privilege escalation to root. It uses shellcode to spawn a shell and calculates the return address dynamically.