Solaris eeprom Vulnerability
BID:206
Info
Solaris eeprom Vulnerability
| Bugtraq ID: | 206 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Jun 24 1997 12:00AM |
| Updated: | Jun 24 1997 12:00AM |
| Credit: | This vulnerability was released by Sun Microsystems as Sun Bulletin 00143 on June 24, 1997. |
| Vulnerable: |
Sun Solaris 2.5.1 Sun Solaris 2.5 Sun Solaris 2.4 Sun Solaris 2.3 |
| Not Vulnerable: |
Sun Solaris 2.5.1 _x86 Sun Solaris 2.5.1 _ppc Sun Solaris 7.0_x86 Sun Solaris 7.0 Sun Solaris 2.6_x86 Sun Solaris 2.6 Sun Solaris 2.5_x86 Sun Solaris 2.4_x86 |
Discussion
Solaris eeprom Vulnerability
The eeprom program changes or displays the value of parameters in the EEPROM (Electrically erasable programmable read-only memory). A buffer overflow condition has been discovered in the setgid bin eeprom program that may allow a non-privileged user to gain root access to the system.
The eeprom program changes or displays the value of parameters in the EEPROM (Electrically erasable programmable read-only memory). A buffer overflow condition has been discovered in the setgid bin eeprom program that may allow a non-privileged user to gain root access to the system.
Exploit / POC
Solaris eeprom Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].