Vulnerability Name: | CVE-2006-4655 (CCN-28820) | ||||||||
Assigned: | 2006-09-07 | ||||||||
Published: | 2006-09-07 | ||||||||
Updated: | 2018-10-17 | ||||||||
Summary: | Buffer overflow in the Strcmp function in the XKEYBOARD extension in X Window System X11R6.4 and earlier, as used in SCO UnixWare 7.1.3 and Sun Solaris 8 through 10, allows local users to gain privileges via a long _XKB_CHARSET environment variable value. | ||||||||
CVSS v3 Severity: | 9.3 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||
CVSS v2 Severity: | 4.6 Medium (CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P) 3.8 Low (Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P/E:F/RL:OF/RC:C)
5.9 Medium (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C/E:F/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Privileges | ||||||||
References: | Source: MITRE Type: CNA CVE-2006-4655 Source: CCN Type: SA21815 Sun Solaris libX11 Buffer Overflow Vulnerability Source: SECUNIA Type: UNKNOWN 21815 Source: CCN Type: SA21845 X11 "_XKB_CHARSET" Buffer Overflow Vulnerability Source: SECUNIA Type: UNKNOWN 21845 Source: CCN Type: SA21856 Unixware libX11 Buffer Overflow Vulnerability Source: SECUNIA Type: UNKNOWN 21856 Source: CCN Type: SA21993 Avaya CMS Sun Solaris libX11 Buffer Overflow Source: SECUNIA Type: UNKNOWN 21993 Source: SREASON Type: UNKNOWN 1545 Source: CCN Type: SECTRACK ID: 1016806 X11R6 XKEYBOARD Extension Buffer Overflow Lets Local Users Gain Elevated Privileges Source: SECTRACK Type: UNKNOWN 1016806 Source: CCN Type: Sun Alert ID: 102570 Buffer Overflow Vulnerability in libX11 Source: SUNALERT Type: UNKNOWN 102570 Source: CONFIRM Type: UNKNOWN http://support.avaya.com/elmodocs2/security/ASA-2006-195.htm Source: CCN Type: ASA-2006-195 Sun Alert Notifications from Sun Weekly Report dated September 09 2006 Source: CCN Type: OSVDB ID: 28622 X.Org X Window System (X11) libX11 XKEYBOARD Extension Local Overflow Source: CCN Type: RISE-2006001 X11R6 XKEYBOARD extension Strcmp() buffer overflow vulnerability Source: MISC Type: Vendor Advisory http://www.risesecurity.org/advisory/RISE-2006001.txt Source: BUGTRAQ Type: UNKNOWN 20060908 [RISE-2006001] X11R6 XKEYBOARD extension Strcmp() buffer overflow Source: BID Type: UNKNOWN 19905 Source: CCN Type: BID-19905 X.Org X Window Server LibX11 XKEYBOARD Extension Local Buffer Overflow Vulnerability Source: VUPEN Type: UNKNOWN ADV-2006-3525 Source: VUPEN Type: UNKNOWN ADV-2006-3529 Source: CCN Type: X.Org Foundation Web site X.Org Foundation Source: XF Type: UNKNOWN xorg-libx11-xkeyboard-bo(28820) Source: XF Type: UNKNOWN xorg-libx11-xkeyboard-bo(28820) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:1798 | ||||||||
Vulnerable Configuration: | Configuration 1: Denotes that component is vulnerable | ||||||||
Oval Definitions | |||||||||
| |||||||||
BACK |