SunOS 5.10 Generic_147148-26 Local Privilege Escalation
Posted by deepcore on January 17, 2020 – 12:58 am
SunOS version 5.10 Generic_147148-26 local privilege escalation exploit. A buffer overflow in the CheckMonitor() function in the Common Desktop Environment versions 2.3.1 and earlier and 1.6 and earlier, as distributed with Oracle Solaris 10 1/13 (Update 11) and earlier, allows local users to gain root privileges via a long palette name passed to dtsession in a malicious .Xdefaults file.
Post a reply
You must be logged in to post a comment.