Heap-based buffer overflow in dtsession for Solaris 2.5.1 through Solaris 9 allows local users to gain root privileges via a long HOME environment variable.
| Software | From | Fixed in |
|---|---|---|
| sun / sunos | 5.7 | 5.7.x |
| sun / sunos | 5.8 | 5.8.x |
| sun / solaris | 9.0 | 9.0.x |
| sun / sunos | 5.5.1 | 5.5.1.x |
| sun / solaris | 2.6 | 2.6.x |