Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in the nss_ldap.so.1 library for Sun Solaris 8 and 9 may allow local users to gain root access via a long hostname in an LDAP lookup.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sun SUNWlldap库主机名远程缓冲区溢出漏洞
Vulnerability Description
Oracle Oracle Solaris是美国甲骨文(Oracle)公司的一套类Unix操作系统。 Sun Solaris 8/9 SUNWlldap库在处理主机名时缺少正确边界缓冲区检查,本地或者远程攻击者利用这个漏洞进行缓冲区溢出攻击,可能以目标进程权限在系统上执行任意指令。 当应用程序连接到有此漏洞的LDAP库时,由于在解析超长主机名时存在问题,通过提供超长恶意主机名给受此漏洞影响的应用程序,可覆盖内存中的敏感地址,精心构建主机名数据可能以目标进程权限在系统上执行任意指令。 根据报告'SUNWll
CVSS Information
N/A
Vulnerability Type
N/A