Solaris xlock Information Disclosure
Posted by deepcore on January 18, 2020 – 1:08 am
A low impact information disclosure vulnerability in the setuid root xlock binary distributed with Solaris may allow local users to read partial contents of sensitive files. Due to the fact that target files must be in a very specific format, exploitation of this flaw to escalate privileges in a realistic scenario is unlikely.
Post a reply
You must be logged in to post a comment.