CVE-2002-1296

Publication date

2004-09-01 04:00:00

Family

mitre

State

PUBLISHED

Description

Directory traversal vulnerability in priocntl system call in Solaris does allows local users to execute arbitrary code via ".." sequences in the pc_clname field of a pcinfo_t structure, which cause priocntl to load a malicious kernel module.