Vulnerability Description
Buffer overflow in the kcsSUNWIOsolf.so library in Solaris 7 and 8 allows local attackers to execute arbitrary commands via the KCMS_PROFILES environment variable, e.g. as demonstrated using the kcms_configure program.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sun | Sunos | 5.7 |
References
- http://archives.neohapsis.com/archives/bugtraq/2001-04/0203.htmlExploitVendor Advisory
- http://www.securityfocus.com/bid/2605
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6365
- http://archives.neohapsis.com/archives/bugtraq/2001-04/0203.htmlExploitVendor Advisory
- http://www.securityfocus.com/bid/2605
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6365
FAQ
What is CVE-2001-0595?
CVE-2001-0595 is a vulnerability with a CVSS score of 4.6 (MEDIUM). Buffer overflow in the kcsSUNWIOsolf.so library in Solaris 7 and 8 allows local attackers to execute arbitrary commands via the KCMS_PROFILES environment variable, e.g. as demonstrated using the kcms_...
How severe is CVE-2001-0595?
CVE-2001-0595 has been rated MEDIUM with a CVSS base score of 4.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2001-0595?
Check the references section above for vendor advisories and patch information. Affected products include: Sun Sunos.