Sun Solaris LD.SO Multiple Local Vulnerabilities

Solaris 'ld.so' is prone to a local directory-traversal vulnerability and a local stack-based buffer-overflow vulnerability.

Note that each of these issues cannot be exploited singularly but can be exploited in tandem to potentially execute arbitrary code with superuser privileges. Furthermore, attackers must have access to a dynamically linked setuid-privileged executable.


 

Privacy Statement
Copyright 2010, SecurityFocus