Computer Security
[EN] securityvulns.ru
no-pyccku



Sun Solaris LD_AUDIT privilege escalation
updated since 28.06.2005
Published:17.07.2005
Source:FULL-DISCLOSURE
SecurityVulns ID:4937
Type:local
Level:9/10
Description:LD_AUDIT environment variable allows to attch external dynamic library compiled with ld.so library. In addition, there is buffer overflow while parsing this variable.
Affected:SUN : Solaris 9
 SUN : Solaris 10
 AVAYA : AVAYA CMS 13
 AVAYA : Avaya IR 1.0
Original documentdocumentpetefran_(at)_gmail.com, Solaris Runtime Linker - Exploit Detection (17.07.2005)
 documentPrzemyslaw Frasunek, Re: [Full-disclosure] Solaris 9/10 ld.so fun (28.06.2005)
 documentPrzemyslaw Frasunek, [Full-disclosure] Solaris 9/10 ld.so fun (28.06.2005)
Files:Solaris ld.so PoC (AMD64)
 Solaris ld.so PoC (SPARC)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru