Sun Solaris Non-Privileged Network Port Hijacking Vulnerability
BID:13241
Info
Sun Solaris Non-Privileged Network Port Hijacking Vulnerability
| Bugtraq ID: | 13241 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Apr 18 2005 12:00AM |
| Updated: | Apr 18 2005 12:00AM |
| Credit: | This issue was announced by the vendor. |
| Vulnerable: |
Sun Solaris 9_x86 Sun Solaris 9 Sun Solaris 8_x86 Sun Solaris 8_sparc Avaya Interactive Response 1.3 Avaya Interactive Response 1.2.1 Avaya Interactive Response Avaya CMS Server 13.0 Avaya CMS Server 12.0 Avaya CMS Server 11.0 Avaya CMS Server 9.0 |
| Not Vulnerable: | |
Discussion
Sun Solaris Non-Privileged Network Port Hijacking Vulnerability
Sun Solaris is prone to a vulnerability that may allow local attackers to hijack non-privileged ports. An attacker could abuse this to run malicious or rogue services.
Sun Solaris is prone to a vulnerability that may allow local attackers to hijack non-privileged ports. An attacker could abuse this to run malicious or rogue services.
Exploit / POC
Sun Solaris Non-Privileged Network Port Hijacking Vulnerability
The following exploit is available:
The following exploit is available:
Solution / Fix
Sun Solaris Non-Privileged Network Port Hijacking Vulnerability
Solution:
Sun has released fixes.
Avaya has released advisory ASA-2005-113 and fixes for this issue. Please see the referenced advisory for details.
Sun Solaris 8_x86
Sun Solaris 8_sparc
Sun Solaris 9
Sun Solaris 9_x86
Solution:
Sun has released fixes.
Avaya has released advisory ASA-2005-113 and fixes for this issue. Please see the referenced advisory for details.
Sun Solaris 8_x86
Sun Solaris 8_sparc
Sun Solaris 9
Sun Solaris 9_x86
References
Sun Solaris Non-Privileged Network Port Hijacking Vulnerability
References:
References: