>> Sun Logical Domain Manager Local Privilege Escalation Vulnerability
Title : Sun Logical Domain Manager Local Privilege Escalation Vulnerability VUPEN ID : VUPEN/ADV-2008-3154 CVE ID : CVE-2008-5099 CWE ID : CWE-264
Rated as : Moderate Risk
Remotely Exploitable : No Locally Exploitable : Yes Release Date : 2008-11-14
Technical Description
A vulnerability has been identified in Sun Logical Domain Manager, which could be exploited by local attackers to gain elevated privileges. This issue is caused by an unspecified error which may allow a local unprivileged user to circumvent SPARC Firmware password protection and gain unauthorized access to data, or gain elevated privileges on the system.
Sun Logical Domain Manager 1.0 (SPARC) - Apply patch 139395-02 or later
Sun Logical Domain Manager 1.0.1 (SPARC) - Apply patch 139396-02 or later
Sun Logical Domain Manager 1.0.2 (SPARC) - Apply patch 139397-02 or later
Sun Logical Domain Manager 1.0.3 (SPARC) - Apply patch 139398-01 or later References