CVE-2002-0987

OpenUNIX 8.0.0-UnixWare 7.1.1 - Privilege Escalation

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2002-0987. PoCs published by Olaf Kirch.

AI-analyzed exploit summary This exploit leverages a privilege escalation vulnerability in Caldera's X Server where the xkbcomp utility is executed with elevated privileges before dropping permissions. The PoC demonstrates arbitrary command execution by manipulating the -xkbdir argument to execute a malicious script.

Description

X server (Xsco) in OpenUNIX 8.0.0 and UnixWare 7.1.1 does not drop privileges before calling programs such as xkbcomp using popen, which could allow local users to gain privileges.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Olaf Kirch · textlocalunix
https://www.exploit-db.com/exploits/21758

This exploit leverages a privilege escalation vulnerability in Caldera's X Server where the xkbcomp utility is executed with elevated privileges before dropping permissions. The PoC demonstrates arbitrary command execution by manipulating the -xkbdir argument to execute a malicious script.

Classification
Working Poc 95%
Attack Type
Lpe
Complexity
Trivial
Reliability
Reliable
Target: Caldera X Server (version not specified)
No auth needed
Prerequisites: Local access to the system · Ability to execute the Xserver command
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →

References (4)

Core 4
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/5044
Various Sources vendor-advisory x_refsource_caldera
ftp://ftp.sco.com/pub/updates/OpenUNIX/CSSA-2002-SCO.38
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/5575
Third Party Advisory vdb-entry x_refsource_xf
http://www.iss.net/security_center/static/9976.php

Scores

EPSS 0.0071
EPSS Percentile 49.8%

Details

Status published
Products (2)
caldera/openunix 8.0
caldera/unixware 7.1.1
Published Sep 24, 2002
Tracked Since Feb 18, 2026