<date>
04/2001

<title>
kcsSUNWIOsolf.so $KCMS_PROFILES

<os>
Solaris 2.7 2.8 (2.6 ?) x86

<info>
There exists a buffer overflow vulnerability in the way the KCMS_PROFILES environment variable is handled by 
the kcsSUNWIOsolf.so library. When exploited through a kcms_configure program it can lead to a local root 
compromise on a vulnerable system.

<link>
SOLARIS/solx86_kcssunwiosolf.c

<file>
SOLARIS/solx86_kcssunwiosolf.c

