Log in

View Full Version : SCO UnixWare pkgadd Directory Traversal Vulnerability



newsbot
06-04-2008, 02:22 PM
SCO UnixWare (http://www.sco.com/products/unixware714/) is "a UNIX operating system that runs on many OEM platforms. The pkgadd command is used to install packages on the system". Local exploitation of a directory traversal vulnerability within the pkgadd program distributed with SCO Group Inc's UnixWare operating system allows attackers to gain root privileges.

http://www.securiteam.com/unixfocus/5SP011PO0A.html