IBM AIX slocal Local Buffer Overflow Vulnerability
BID:15878
Info
IBM AIX slocal Local Buffer Overflow Vulnerability
| Bugtraq ID: | 15878 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Dec 15 2005 12:00AM |
| Updated: | Dec 15 2005 12:00AM |
| Credit: | IBM credits David Litchfield of NGS Software with the discovery of this vulnerability. |
| Vulnerable: |
IBM AIX 5.3 L IBM AIX 5.2.2 IBM AIX 5.2 L IBM AIX 5.1 L IBM AIX 5.3 IBM AIX 5.2 IBM AIX 5.1 |
| Not Vulnerable: | |
Discussion
IBM AIX slocal Local Buffer Overflow Vulnerability
slocal is prone to a buffer overflow vulnerability. This issue arises because the application fails to perform boundary checks prior to copying user-supplied data into insufficiently-sized memory buffers.
An attacker can exploit this issue to execute arbitrary code and gain superuser privileges. This will result in a complete compromise of the affected computer.
Very few details are available on this issue; this BID will be updated as further information becomes available.
slocal is prone to a buffer overflow vulnerability. This issue arises because the application fails to perform boundary checks prior to copying user-supplied data into insufficiently-sized memory buffers.
An attacker can exploit this issue to execute arbitrary code and gain superuser privileges. This will result in a complete compromise of the affected computer.
Very few details are available on this issue; this BID will be updated as further information becomes available.
Exploit / POC
IBM AIX slocal Local Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
IBM AIX slocal Local Buffer Overflow Vulnerability
Solution:
IBM has released an interim fix addressing this issue. IBM also reports APARs will be available January 30, 2006.
IBM AIX 5.1
IBM AIX 5.2
IBM AIX 5.3
IBM AIX 5.1 L
IBM AIX 5.2 L
IBM AIX 5.2.2
IBM AIX 5.3 L
Solution:
IBM has released an interim fix addressing this issue. IBM also reports APARs will be available January 30, 2006.
IBM AIX 5.1
-
IBM IY78224
http://www-1.ibm.com/servers/eserver/support/pseries/aixfixes.html -
IBM slocal_ifix.tar.Z
ftp://aix.software.ibm.com/aix/efixes/security/slocal_ifix.tar.Z
IBM AIX 5.2
-
IBM IY78225
http://www-1.ibm.com/servers/eserver/support/pseries/aixfixes.html -
IBM slocal_ifix.tar.Z
ftp://aix.software.ibm.com/aix/efixes/security/slocal_ifix.tar.Z
IBM AIX 5.3
-
IBM IY78226
http://www-1.ibm.com/servers/eserver/support/pseries/aixfixes.html -
IBM slocal_ifix.tar.Z
ftp://aix.software.ibm.com/aix/efixes/security/slocal_ifix.tar.Z
IBM AIX 5.1 L
-
IBM IY78224
http://www-1.ibm.com/servers/eserver/support/pseries/aixfixes.html -
IBM slocal_ifix.tar.Z
ftp://aix.software.ibm.com/aix/efixes/security/slocal_ifix.tar.Z
IBM AIX 5.2 L
-
IBM IY78225
http://www-1.ibm.com/servers/eserver/support/pseries/aixfixes.html -
IBM slocal_ifix.tar.Z
ftp://aix.software.ibm.com/aix/efixes/security/slocal_ifix.tar.Z
IBM AIX 5.2.2
-
IBM IY78225
http://www-1.ibm.com/servers/eserver/support/pseries/aixfixes.html -
IBM slocal_ifix.tar.Z
ftp://aix.software.ibm.com/aix/efixes/security/slocal_ifix.tar.Z
IBM AIX 5.3 L
-
IBM IY78226
http://www-1.ibm.com/servers/eserver/support/pseries/aixfixes.html -
IBM slocal_ifix.tar.Z
ftp://aix.software.ibm.com/aix/efixes/security/slocal_ifix.tar.Z
References
IBM AIX slocal Local Buffer Overflow Vulnerability
References:
References:
- AIX Homepage (IBM)
- Patches available for IBM AIX flaws ("NGSSoftware Insight Security Research"
)