Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Unspecified vulnerability in the libpkcs11 library in Sun Solaris 10 might allow local users to gain privileges or cause a denial of service (application failure) via unknown attack vectors that involve the getpwnam family of non-reentrant functions.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sun Solaris libpkcs11本地权限提升漏洞
Vulnerability Description
Solaris是一款由Sun开发和维护的商业性质UNIX操作系统。 Solaris系统的libpkcs11(3LIB)库实现上存在漏洞,本地攻击者可能利用此漏洞提升权限。 如果特权应用程序链接到libpkcs11(3LIB)库且使用非重入函数的getpwnam(3C)家族获得口令项的话,本地非特权用户就可以以应用程序的权限执行任意代码,具体取决于应用程序使用getpwnam(3C)所提供数据及相关函数的方法。应用程序也可能由于从非重入getpwnam(3C)函数收到非预期的数据而失效。
CVSS Information
N/A
Vulnerability Type
N/A