pkgadd in Sun Solaris 2.5.1 through 8 installs files setuid/setgid root if the pkgmap file contains a "?" (question mark) in the (1) mode, (2) owner, or (3) group fields, which allows attackers to elevate privileges.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2005-06-28T04:00:00Z
Updated: 2024-09-17T03:54:26.997Z
Reserved: 2005-06-28T04:00:00Z
Link: CVE-2002-1871
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2002-12-31T05:00:00.000
Modified: 2018-10-30T16:26:22.763
Link: CVE-2002-1871
Redhat
No data.