IRIX /usr/sbin/Mail Vulnerability
BID:13
Info
IRIX /usr/sbin/Mail Vulnerability
| Bugtraq ID: | 13 |
| Class: | Unknown |
| CVE: |
CVE-1999-1554 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 31 1990 12:00AM |
| Updated: | Jul 11 2009 12:16AM |
| Credit: | |
| Vulnerable: |
SGI IRIX 3.3.1 SGI IRIX 3.3 |
| Not Vulnerable: | |
Discussion
IRIX /usr/sbin/Mail Vulnerability
/usr/sbin/Mail can fail to reset its group id to the group id of
the caller. This can allow any user logged onto the system to
read any other user's (including root's) mail.
/usr/sbin/Mail can fail to reset its group id to the group id of
the caller. This can allow any user logged onto the system to
read any other user's (including root's) mail.
Exploit / POC
IRIX /usr/sbin/Mail Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution / Fix
IRIX /usr/sbin/Mail Vulnerability
Solution:
A fixed /usr/sbin/Mail binary has been made available for
anonymous ftp from SGI.COM ([192.48.153.1]). The
correct binary can be found at:
sgi/Mail/Mail
under the ftp directory.
Note that this binary must be installed with the same group
(mail) and permissions (2755) as your existing 3.3 or 3.3.1
/usr/sbin/Mail.
Solution:
A fixed /usr/sbin/Mail binary has been made available for
anonymous ftp from SGI.COM ([192.48.153.1]). The
correct binary can be found at:
sgi/Mail/Mail
under the ftp directory.
Note that this binary must be installed with the same group
(mail) and permissions (2755) as your existing 3.3 or 3.3.1
/usr/sbin/Mail.