Directory traversal vulnerability in Sun Kodak Color Management System (KCMS) library service daemon (kcms_server) allows remote attackers to read arbitrary files via the KCS_OPEN_PROFILE procedure.
Link | Tags |
---|---|
http://www.entercept.com/news/uspr/01-22-03.asp | patch vendor advisory |
http://www.securityfocus.com/bid/6665 | vdb entry |
http://sunsolve.sun.com/pub-cgi/retrieve.pl?doc=fsalert/50104 | vendor advisory |
http://www.kb.cert.org/vuls/id/850785 | us government resource third party advisory patch |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2592 | vdb entry signature |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A120 | vdb entry signature |
https://exchange.xforce.ibmcloud.com/vulnerabilities/11129 | vdb entry |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A195 | vdb entry signature |
http://marc.info/?l=bugtraq&m=104326556329850&w=2 | mailing list |