Buffer overflow in the format command in Solaris 8, 9, and 10 allows local users with access to format (such as the "File System Management" RBAC profile) to execute arbitrary code via unknown vectors, a different vulnerability than CVE-2006-4307.
2006-08-24T01:04:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 7.2 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | sun | solaris | 8.0 | Yes |
Operating System | sun | solaris | 8.0 | Yes |
Operating System | sun | solaris | 8.0 | Yes |
Operating System | sun | solaris | 9.0 | Yes |
Operating System | sun | solaris | 9.0 | Yes |
Operating System | sun | solaris | 9.0 | Yes |
Operating System | sun | solaris | 10.0 | Yes |
Operating System | sun | solaris | 10.0 | Yes |
Operating System | sun | solaris | 10.0 | Yes |
Operating System | sun | solaris | 10.0 | Yes |
Operating System | sun | sunos | 5.8 | Yes |
Operating System | sun | sunos | 5.9 | Yes |
Operating System | sun | sunos | 5.10 | Yes |