CVE-2006-4655
Buffer overflow in the Strcmp function in the XKEYBOARD extension in X Window System X11R6.4 and earlier, as used in SCO UnixWare 7.1.3 and Sun Solaris 8 through 10, allows local users to gain privileges via a long _XKB_CHARSET environment variable value.
- Affected products
- X-Window-System
- Sco Unixware
- = 7.1.3
- Sun Solaris
- = 8.0, 9.0, 10.0
- Fix
- Available
- CVSS 2.0
- 4.6 MEDIUM
- EPSS
- 0.9% (57th percentile)
- NVD status
- Modified
- Published
- 2006-09-09
CVE-2006-4655 at NVD
7 known exploits for CVE-2006-4655
Proof-of-concept code and exploit modules indexed by Sploitus
exploits
X11R6 <= 6.4 XKEYBOARD Local Buffer Overflow Exploit (solaris/sparc)
X11R6 6.4 XKEYBOARD (SolarisSPARC) - Local Buffer Overflow (2)
X11R6 < 6.4 XKEYBOARD (Solaris/SPARC) - Local Buffer Overflow (2)
X11R6 < 6.4 XKEYBOARD (sco x86) - Local Buffer Overflow
X11R6 < 6.4 XKEYBOARD (solaris x86) - Local Buffer Overflow
X11R6 < 6.4 XKEYBOARD (Solaris/SPARC) - Local Buffer Overflow (1)