CVE

Id
6253  
CVE No.
CVE-2002-1871  
Status
Candidate  
Description
pkgadd in Sun Solaris 2.5.1 through 8 installs files setuid/setgid root if the pkgmap file contains a "?" (question mark) in the (1) mode, (2) owner, or (3) group fields, which allows attackers to elevate privileges.  
Phase
Assigned (20050629)  
Votes
None (candidate not yet proposed)  
Comments