Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in Xsun on Solaris 2.6 through 8 allows local users to gain root privileges via a long -co (color database) command line argument.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Solaris Xsun "-co"参数缓冲区溢出漏洞
Vulnerability Description
Xsun是Solaris平台上的Xwindow 服务器(for X11)。它被安装在/usr/openwin/bin/下。在SPARC平台下,它被设置了setgid root属性,在x86平台下,它被设置了setuid root属性。 Xsun支持一个命令行参数:"-co",用来指定颜色数据库文件。由于没有对用户输入的文件名长度进行检查,攻击者可能引发一个堆溢出。小心地构造溢出数据,攻击者可以以root用户或者权限执行任意代码。 如果攻击者为"-co"参数提供一个超长的参数(例如,超过6000字节长),就
CVSS Information
N/A
Vulnerability Type
N/A