Solaris mailtool Buffer Overflow Vulnerability
BID:2787
Info
Solaris mailtool Buffer Overflow Vulnerability
| Bugtraq ID: | 2787 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | May 28 2001 12:00AM |
| Updated: | May 28 2001 12:00AM |
| Credit: | Reported to Bugtraq by dethy <[email protected]> on May 28, 2001. |
| Vulnerable: |
Sun Solaris 8_sparc |
| Not Vulnerable: | |
Discussion
Solaris mailtool Buffer Overflow Vulnerability
The mailtool program included with OpenWindows in Solaris, contains a buffer overflow vulnerability which may allow local users to execute arbitrary code/commands with group 'mail' privileges.
The overflow occurs when a string exceeding approximately 1010 characters is given as the OPENWINHOME environment variable.
The mailtool program included with OpenWindows in Solaris, contains a buffer overflow vulnerability which may allow local users to execute arbitrary code/commands with group 'mail' privileges.
The overflow occurs when a string exceeding approximately 1010 characters is given as the OPENWINHOME environment variable.