Oracle Solaris - 'rdist' Privilege Escalation



EKU-ID: 39045 CVE: CVE-2010-0916;OSVDB-66350 OSVDB-ID:
Author: Monarch Rich Published: 2010-07-13 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/41612/info

Oracle Solaris is prone to a local privilege-escalation vulnerability.

Local attackers can exploit this issue to execute arbitrary code with superuser privileges. Successfully exploiting this issue will result in the complete compromise of affected computers.

The following products are affected:

Solaris 10
OpenSolaris

/usr/bin/rdist -cDwh file_that_is_hardlink rlogin_host:LONG_STRING