CVE-2003-1058
Last modified
CVE-2003-1058 is a vulnerability of currently unknown severity. The Xsun server for Sun Solaris 2.6 through 9, when running in Direct Graphics Access (DGA) mode, allows local users to cause a denial of service (Xsun crash) or to create or overwrite arbitrary files on the system, probably via a symlink attack on temporary server files.. EPSS estimates a 0.30% chance of exploitation in the next 30 days.
Description
The Xsun server for Sun Solaris 2.6 through 9, when running in Direct Graphics Access (DGA) mode, allows local users to cause a denial of service (Xsun crash) or to create or overwrite arbitrary files on the system, probably via a symlink attack on temporary server files.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Sun | Solaris | 2.6 |
| Sun | Solaris | 7.0 |
| Sun | Solaris | 8.0 |
| Sun | Solaris | 9.0 |
| Sun | Sunos | All versions |
| Sun | Sunos | 5.7 |
| Sun | Sunos | 5.8 |
References
- http://secunia.com/advisories/10346Patch, Vendor Advisory
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-57419-1Patch, Vendor Advisory
- http://www.ciac.org/ciac/bulletins/o-033.shtmlPatch, Vendor Advisory
- http://www.osvdb.org/2892Patch, Vendor Advisory
- http://secunia.com/advisories/10346Patch, Vendor Advisory
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-57419-1Patch, Vendor Advisory
- http://www.ciac.org/ciac/bulletins/o-033.shtmlPatch, Vendor Advisory
- http://www.osvdb.org/2892Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2003-1058?
How severe is CVE-2003-1058?
How do I fix CVE-2003-1058?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2003
- CVE-2003-1052IBM DB2 7.1 and 8.1 allow the bin user to gain root privileg…
- CVE-2003-1053Multiple buffer overflows in XShisen allow attackers to exec…
- CVE-2003-1054mod_access_referer 1.0.2 allows remote attackers to cause a …
- CVE-2003-1055Buffer overflow in the nss_ldap.so.1 library for Sun Solaris…
- CVE-2003-1056The ed editor for Sun Solaris 2.6, 7, and 8 allows local use…
- CVE-2003-1057Unknown vulnerability in CDE Print Viewer (dtprintinfo) for …
- CVE-2003-1059Unknown vulnerability in the libraries for the PGX32 frame b…
- CVE-2003-1060The NFS Server for Solaris 7, 8, and 9 allows remote attacke…
- CVE-2003-1061Race condition in Solaris 2.6 through 9 allows local users t…
- CVE-2003-1062Unknown vulnerability in the sysinfo system call for Solaris…
- CVE-2003-1063The patches (1) 105693-13, (2) 108800-02, (3) 105694-13, and…
- CVE-2003-1064Solaris 8 with IPv6 enabled allows remote attackers to cause…
Are you affected by CVE-2003-1058?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
