CVE-2003-1068Improper Restriction of Operations within the Bounds of a Memory Buffer in Solaris

6 documents3 sources
Severity
7.2HIGHNVD
EPSS
0.1%
top 66.57%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 6
Latest updateApr 29

Description

Buffer overflow in utmp_update for Solaris 2.6 through 9 allows local users to gain root privileges, as identified by Sun BugID 4659277, a different vulnerability than CVE-2003-1082.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages2 packages

NVDsun/solaris4 versions+3
NVDsun/sunos5.7, 5.8+1

Patches

🔴Vulnerability Details

4
GHSA
GHSA-wqf3-g9hj-x2rh: Buffer overflow in utmp_update for Solaris 22022-04-29
GHSA
GHSA-gvhr-r49v-53qr: Buffer overflow in utmp_update for Solaris 22022-04-29
CVEList
CVE-2003-1082: Buffer overflow in utmp_update for Solaris 22005-02-08
CVEList
CVE-2003-1068: Buffer overflow in utmp_update for Solaris 22005-02-08
CVE-2003-1068 — SUN Solaris vulnerability | cvebase