20010705 Solaris whodo Vulnerabilitymailing list
http://archives.neohapsis.com/archives/bugtraq/2001-07/0076.html CVE-2001-1076
Solaris 2.6/2.6/7.0/8 whodo - Local Buffer Overflow
Record summary
CVE-2001-1076 has a selected CVSS score of 7.2; EIP currently links 1 catalogued exploit.
Description
Buffer overflow in whodo in Solaris SunOS 5.5.1 through 5.8 allows local users to execute arbitrary code via a long (1) SOR or (2) CFIME environment variable.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBSolaris 2.6/2.6/7.0/8 whodo - Local Buffer OverflowExploitDB exploitby Pablo SorNot analyzed1 file
References
62935vdb entry
http://www.securityfocus.com/bid/2935 solaris-whodo-bo(6802)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/6802 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2001-1076 oval:org.mitre.oval:def:34vdb entrysignature
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A34 oval:org.mitre.oval:def:47vdb entrysignature
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A47