Dear CDE maintainers, I’ve written a draft advisory and a PoC exploit for a CDE vulnerability that affects Oracle Solaris 10 1/13 (Update 11) and potentially other supported platforms, as presented at #INFILTRATE19 on May 2nd, 2019 in the talk "A bug's life: story of a Solaris 0day".
Please let me know how I can privately provide you the vulnerability details, so that you can release a fix if appropriate. Regards, -- Marco Ivaldi, SAT Manager CISSP, OSCP, QSA, ASV, OPSA, OPST, OWSE, LA27001, PRINCE2F @Mediaservice.net S.r.l. con Socio Unico https://www.mediaservice.net/
_______________________________________________ cdesktopenv-devel mailing list cdesktopenv-devel@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/cdesktopenv-devel