|
A local overflow exists in SCO UnixWare. UnixWare fails to check the boundary of arguments supplied to the "Xsco" command, resulting in a buffer overflow. By passing an overly long argument (argv[1]) to Xsco, an local attacker can cause a buffer overflow and gain superuser privileges, resulting in a loss of integrity.
|