IBM AIX MUXATMD Local Buffer Overflow Vulnerability
BID:15879
Info
IBM AIX MUXATMD Local Buffer Overflow Vulnerability
| Bugtraq ID: | 15879 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Dec 15 2005 12:00AM |
| Updated: | Dec 15 2005 12:00AM |
| Credit: | This vulnerability was reported to the vendor by David Litchfield of NGS Software. |
| Vulnerable: |
IBM AIX 5.3 L IBM AIX 5.2.2 IBM AIX 5.2 L IBM AIX 5.1 L IBM AIX 5.3 IBM AIX 5.2 IBM AIX 5.1 |
| Not Vulnerable: | |
Discussion
IBM AIX MUXATMD Local Buffer Overflow Vulnerability
IBM AIX muxatmd is prone to a local buffer overflow vulnerability. This issue arises because the application fails to perform boundary checks prior to copying user-supplied data into insufficiently-sized memory buffers.
A successful attack allows arbitrary machine code execution with superuser privileges, due to the affected application being installed with setuid-superuser privileges.
IBM AIX muxatmd is prone to a local buffer overflow vulnerability. This issue arises because the application fails to perform boundary checks prior to copying user-supplied data into insufficiently-sized memory buffers.
A successful attack allows arbitrary machine code execution with superuser privileges, due to the affected application being installed with setuid-superuser privileges.
Exploit / POC
IBM AIX MUXATMD Local Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
IBM AIX MUXATMD Local Buffer Overflow Vulnerability
Solution:
The vendor has released an advisory, along with interim fixes to address this issue. These interim fixes are available from the following location:
ftp://aix.software.ibm.com/aix/efixes/security/libisode_ifix.tar.Z
The vendor states that the following fixes should be available approximately 30 Jan, 2006:
APAR number for AIX 5.1.0: IY78221
APAR number for AIX 5.2.0: IY78222
APAR number for AIX 5.3.0: IY78223
Please see the referenced advisory for further information on obtaining and applying the interim fixes.
Solution:
The vendor has released an advisory, along with interim fixes to address this issue. These interim fixes are available from the following location:
ftp://aix.software.ibm.com/aix/efixes/security/libisode_ifix.tar.Z
The vendor states that the following fixes should be available approximately 30 Jan, 2006:
APAR number for AIX 5.1.0: IY78221
APAR number for AIX 5.2.0: IY78222
APAR number for AIX 5.3.0: IY78223
Please see the referenced advisory for further information on obtaining and applying the interim fixes.
References
IBM AIX MUXATMD Local Buffer Overflow Vulnerability
References:
References:
- AIX Homepage (IBM)
- Patches available for IBM AIX flaws ("NGSSoftware Insight Security Research"
)