Back to search
CVE-2002-1871
Published: Jun 28, 2005
Modified: Sep 17, 2024
PUBLISHED
Description
pkgadd in Sun Solaris 2.5.1 through 8 installs files setuid/setgid root if the pkgmap file contains a "?" (question mark) in the (1) mode, (2) owner, or (3) group fields, which allows attackers to elevate privileges.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
5208
vdb-entry
x_refsource_BID
solaris-pkgadd-insecure-permissions(9544)
vdb-entry
x_refsource_XF
45693
vendor-advisory
x_refsource_SUNALERT
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now