RedHat 7.0 Cyrus-SASL Authorization Vulnerability
BID:1875
Info
RedHat 7.0 Cyrus-SASL Authorization Vulnerability
| Bugtraq ID: | 1875 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Oct 26 2000 12:00AM |
| Updated: | Oct 26 2000 12:00AM |
| Credit: | First published in RedHat advisory RHSA-2000:094-01 and posted to Bugtraq on Oct 26, 2000. |
| Vulnerable: |
Cmu Cyrus-Sasl 1.5.24 with RedHat 7.0 |
| Not Vulnerable: |
Cmu Cyrus-Sasl 1.5.24 |
Discussion
RedHat 7.0 Cyrus-SASL Authorization Vulnerability
Cyrus-SASL is an open-source implementation of SASL, the "Simple Authentication and Security Layer". The Cyrus-SASL 1.5.24 package that ships with RedHat 7.0 contains a bug in authorization code that may make it possible for an elevation of privileges.
The vulnerability reportedly allows authenticated users to access resources when they may not have the authorization to do so. This bug only affects the distribution of version 1.5.24 that ships with RedHat Linux 7.0. The Cyrus-SASL 1.5.24 package available at the main project ftp site does not contain this bug. Older versions of Cyrus-SASL that shipped with RedHat PowerTools are not vulnerable.
Cyrus-SASL is an open-source implementation of SASL, the "Simple Authentication and Security Layer". The Cyrus-SASL 1.5.24 package that ships with RedHat 7.0 contains a bug in authorization code that may make it possible for an elevation of privileges.
The vulnerability reportedly allows authenticated users to access resources when they may not have the authorization to do so. This bug only affects the distribution of version 1.5.24 that ships with RedHat Linux 7.0. The Cyrus-SASL 1.5.24 package available at the main project ftp site does not contain this bug. Older versions of Cyrus-SASL that shipped with RedHat PowerTools are not vulnerable.
Exploit / POC
RedHat 7.0 Cyrus-SASL Authorization Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution / Fix
RedHat 7.0 Cyrus-SASL Authorization Vulnerability
Solution:
RedHat has released an RPM upgrade to patch this vulnerability.
Cmu Cyrus-Sasl 1.5.24 with RedHat 7.0
Solution:
RedHat has released an RPM upgrade to patch this vulnerability.
Cmu Cyrus-Sasl 1.5.24 with RedHat 7.0
-
Red Hat Inc. 7.0 alpha cyrus-sasl-1.5.24-11.alpha.rpm
ftp://updates.redhat.com/7.0/alpha/cyrus-sasl-1.5.24-11.alpha.rpm -
Red Hat Inc. 7.0 i386 cyrus-sasl-1.5.24-11.i386.rpm
ftp://updates.redhat.com/7.0/i386/cyrus-sasl-1.5.24-11.i386.rpm
References
RedHat 7.0 Cyrus-SASL Authorization Vulnerability
References:
References:
- Cyrus Project Homepage (Carnegie Mellon University)
- Updates, Fixes, and Errata Page (RedHat)