QNX Photon MicroGUI Multiple Utility Server Flag Buffer Overflow Vulnerabilities
BID:11164
Info
QNX Photon MicroGUI Multiple Utility Server Flag Buffer Overflow Vulnerabilities
| Bugtraq ID: | 11164 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Sep 13 2004 12:00AM |
| Updated: | Sep 13 2004 12:00AM |
| Credit: | Disclosure of these issues are credited to Julio Cesar Fort <[email protected]>. |
| Vulnerable: |
QNX RTOS 6.1 QNX Photon MicroGUI |
| Not Vulnerable: | |
Discussion
QNX Photon MicroGUI Multiple Utility Server Flag Buffer Overflow Vulnerabilities
Reportedly QNX Photon MicroGUI is affected by multiple buffer overflow vulnerabilities in MicroGUI utilities. These issues are due to a failure of the affected applications to validate user-supplied string lengths before copying them into finite process buffers.
An attacker may leverage these issues to execute arbitrary code on the affected system within the context of the vulnerable applications; the applications are typically setuid applications.
Reportedly QNX Photon MicroGUI is affected by multiple buffer overflow vulnerabilities in MicroGUI utilities. These issues are due to a failure of the affected applications to validate user-supplied string lengths before copying them into finite process buffers.
An attacker may leverage these issues to execute arbitrary code on the affected system within the context of the vulnerable applications; the applications are typically setuid applications.
Exploit / POC
QNX Photon MicroGUI Multiple Utility Server Flag Buffer Overflow Vulnerabilities
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
The following proof of concept exploits have been provided:
$ /usr/photon/bin/phrelay-cfg -s AAAAA[...]
$ /usr/photon/bin/phlocale -s AAAAA[...]
$ /usr/photon/bin/pkg-installer -s AAAAA[...]
$ /usr/photon/bin/input-cfg -s AAAAA[...]
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
The following proof of concept exploits have been provided:
$ /usr/photon/bin/phrelay-cfg -s AAAAA[...]
$ /usr/photon/bin/phlocale -s AAAAA[...]
$ /usr/photon/bin/pkg-installer -s AAAAA[...]
$ /usr/photon/bin/input-cfg -s AAAAA[...]
Solution / Fix
QNX Photon MicroGUI Multiple Utility Server Flag Buffer Overflow Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
QNX Photon MicroGUI Multiple Utility Server Flag Buffer Overflow Vulnerabilities
References:
References:
- QNX Homepage (QNX Software Systems Ltd.)
- [RLSA_02-2004] QNX Photon multiple buffer overflows (Julio Cesar Fort
)