SCO OpenServer cancel Buffer Overflow Vulnerability
BID:702
Info
SCO OpenServer cancel Buffer Overflow Vulnerability
| Bugtraq ID: | 702 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Oct 08 1999 12:00AM |
| Updated: | Oct 08 1999 12:00AM |
| Credit: | Discovered and posted to BugTraq by Brock Tellier <[email protected]> on October 12, 1999. |
| Vulnerable: |
SCO Open Server 5.0.5 |
| Not Vulnerable: | |
Discussion
SCO OpenServer cancel Buffer Overflow Vulnerability
There is a buffer overflow vulnerability in /opt/K/SCO/Unix/5.0.5Eb/.softmgmt/var/usr/bin/cancel. It is important to know that the overflows are not in "/usr/bin/cancel" or "/usr/lpd/remote/cancel". The consequence of this vulnerability being exploited is compromise of effective groupid of group lp.
There is a buffer overflow vulnerability in /opt/K/SCO/Unix/5.0.5Eb/.softmgmt/var/usr/bin/cancel. It is important to know that the overflows are not in "/usr/bin/cancel" or "/usr/lpd/remote/cancel". The consequence of this vulnerability being exploited is compromise of effective groupid of group lp.
Exploit / POC
SCO OpenServer cancel Buffer Overflow Vulnerability
Exploit available:
Exploit available: