Format string vulnerability in the message catalog library functions in UnixWare 7.1.1 allows local users to gain privileges by modifying the LC_MESSAGE environment variable to read other message catalogs containing format strings from setuid programs such as vxprint.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Unixware | Caldera | 7.1.1 (including) | 7.1.1 (including) |