Directory traversal vulnerability in Sun Kodak Color Management System (KCMS) library service daemon (kcms_server) allows remote attackers to read arbitrary files via the KCS_OPEN_PROFILE procedure.
| Software | From | Fixed in |
|---|---|---|
| sun / solaris | 2.5.1 | 2.5.1.x |
| sun / sunos | 5.7 | 5.7.x |
| sun / sunos | 5.8 | 5.8.x |
| sun / solaris | 7.0 | 7.0.x |
| sun / solaris | 9.0 | 9.0.x |
| sun / sunos | 5.5.1 | 5.5.1.x |
| sun / solaris | 9.0-x86_update_2 | 9.0-x86_update_2.x |
| sun / solaris | 2.6 | 2.6.x |
| sun / solaris | 8.0 | 8.0.x |