Xsun is set-uid root on Solaris/Intel where it needs it for certain device drivers. Xsun is set-gid sys on Solaris/SPARC. If you run Xsun through dtlogin, you can safely strip the set-uid bits. Casper
- Solaris Xsun buffer overflow vulnerability eEye Digital Security
- Re: Solaris Xsun buffer overflow vulnerability Leif Sawyer
- Re: Solaris Xsun buffer overflow vulnerabil... Alan Coopersmith
- Re: Solaris Xsun buffer overflow vulnerabil... Casper Dik
- Re: Solaris Xsun buffer overflow vulnerability Marc Maiffret
