Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-1999-0767 โ€” Improper Restriction of Operations within the Bounds of a Memory Buffer in Solaris

8 documents4 sources
Severity
7.2HIGHNVD
EPSS
0.6%
top 29.76%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedSep 8
Latest updateApr 30

Description

Buffer overflow in Solaris libc, ufsrestore, and rcp via LC_MESSAGES environmental variable.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages2 packages

โ–ถNVDsun/solaris2.6, 7.0+1
โ–ถNVDsun/sunos5.7

๐Ÿ”ดVulnerability Details

2
GHSA
GHSA-w824-xcx7-fxrv: Buffer overflow in Solaris libc, ufsrestore, and rcp via LC_MESSAGES environmental variableโ†—2022-04-30
โ–ถ
CVEList
CVE-1999-0767: Buffer overflow in Solaris libc, ufsrestore, and rcp via LC_MESSAGES environmental variableโ†—2000-02-04
โ–ถ

๐Ÿ’ฅExploits & PoCs

5
Exploit-DB
IBM AIX 4.2.1 / Sun Solaris 7.0 - LC_MESSAGES libc Buffer Overflow (5)โ†—1999-05-22
โ–ถ
Exploit-DB
IBM AIX 4.2.1 / Sun Solaris 7.0 - LC_MESSAGES libc Buffer Overflow (1)โ†—1999-05-22
โ–ถ
Exploit-DB
IBM AIX 4.2.1 / Sun Solaris 7.0 - LC_MESSAGES libc Buffer Overflow (3)โ†—1999-05-22
โ–ถ
Exploit-DB
IBM AIX 4.2.1 / Sun Solaris 7.0 - LC_MESSAGES libc Buffer Overflow (2)โ†—1999-05-22
โ–ถ
Exploit-DB
IBM AIX 4.2.1 / Sun Solaris 7.0 - LC_MESSAGES libc Buffer Overflow (4)โ†—1999-05-22
โ–ถ
CVE-1999-0767 โ€” SUN Solaris vulnerability | cvebase