Multiple buffer overflows in programs used by scoadmin and sysadmsh in SCO OpenServer 5.0.6a and earlier allow local users to gain privileges via a long TERM environment variable to (1) atcronsh, (2) auditsh, (3) authsh, (4) backupsh, (5) lpsh, (6) sysadm.menu, or (7) termsh.
Link | Tags |
---|---|
http://www.securityfocus.com/archive/82/191216 | vendor advisory mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/7281 | vdb entry |
http://www.securityfocus.com/archive/1/219966 | patch vendor advisory |