[Forgot Password]
Login  Register Subscribe

30389

 
 

423868

 
 

247085

 
 

909

 
 

194218

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Kernel - (cpujul2018)

ID: oval:org.secpod.oval:def:2100333Date: (C)2019-12-31   (M)2022-10-10
Class: PATCHFamily: unix




This vulnerability allows local attackers to escalate privileges on vulnerable installations of Joyent SmartOS release-20170803-20170803T064301Z. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the DTrace DOF files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated object. An attacker can leverage this vulnerability to execute code under the context of the host OS. Was ZDI-CAN-5106.

Platform:
Sun Solaris 11
Product:
system/dtrace
Reference:
cpujul2018
CVE-2018-1171
CVE    1
CVE-2018-1171
CPE    1
cpe:/o:oracle:solaris:11

© SecPod Technologies