cbcvebase.
CVE-1999-1413
published 1996-08-03

CVE-1999-1413: Solaris 2.4 before kernel jumbo patch -35 allows set-gid programs to dump core even if the real user id is not in the set-gid group, which allows local users…

PriorityP411medium4.6CVSS 2.0
AVLACLAuNCPIPAP
EXPLOIT
EPSS
0.72%
49.4th percentile
Solaris 2.4 before kernel jumbo patch -35 allows set-gid programs to dump core even if the real user id is not in the set-gid group, which allows local users to overwrite or create files at higher privileges by causing a core dump, e.g. through dmesg.

Affected

2 ranges
VendorProductVersion rangeFixed in
sunsolaris
sunsunos
CVEs like this are exactly what “Exploited This Week” covers.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.