Exploitation Summary
EIP tracks 1 public exploit for CVE-2002-0987. PoCs published by Olaf Kirch.
AI-analyzed exploit summary This exploit leverages a privilege escalation vulnerability in Caldera's X Server where the xkbcomp utility is executed with elevated privileges before dropping permissions. The PoC demonstrates arbitrary command execution by manipulating the -xkbdir argument to execute a malicious script.
Description
X server (Xsco) in OpenUNIX 8.0.0 and UnixWare 7.1.1 does not drop privileges before calling programs such as xkbcomp using popen, which could allow local users to gain privileges.
Exploits (1)
This exploit leverages a privilege escalation vulnerability in Caldera's X Server where the xkbcomp utility is executed with elevated privileges before dropping permissions. The PoC demonstrates arbitrary command execution by manipulating the -xkbdir argument to execute a malicious script.