HP-UX Software Distributor SWPackage Local Buffer Overflow Vulnerability
BID:20706
Info
HP-UX Software Distributor SWPackage Local Buffer Overflow Vulnerability
| Bugtraq ID: | 20706 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2006-2574 CVE-2006-5557 |
| Remote: | No |
| Local: | Yes |
| Published: | May 24 2006 12:00AM |
| Updated: | Jul 05 2016 09:38PM |
| Credit: | NCC Group is credited with the discovery of this vulnerability. |
| Vulnerable: |
HP HP-UX B.11.23 HP HP-UX B.11.11 HP HP-UX B.11.04 HP HP-UX B.11.00 Avaya Predictive Dialer 0 |
| Not Vulnerable: | |
Discussion
HP-UX Software Distributor SWPackage Local Buffer Overflow Vulnerability
HP-UX is prone to a local buffer-overflow vulnerability because it fails to properly bounds-check user-supplied input before copying it into an insufficiently sized buffer.
An attacker can exploit this issue to execute arbitrary code with superuser privileges, completely compromising affected computers.
This issue was originally disclosed as part of BID 18098 (HP-UX Software Distributor Unspecified Local Privilege Escalation Vulnerability). This issue is assigned a separate document due to new information becoming available.
HP-UX is prone to a local buffer-overflow vulnerability because it fails to properly bounds-check user-supplied input before copying it into an insufficiently sized buffer.
An attacker can exploit this issue to execute arbitrary code with superuser privileges, completely compromising affected computers.
This issue was originally disclosed as part of BID 18098 (HP-UX Software Distributor Unspecified Local Privilege Escalation Vulnerability). This issue is assigned a separate document due to new information becoming available.
Exploit / POC
HP-UX Software Distributor SWPackage Local Buffer Overflow Vulnerability
The following exploit code is available:
The following exploit code is available:
Solution / Fix
HP-UX Software Distributor SWPackage Local Buffer Overflow Vulnerability
Solution:
The vendor has released security advisory HPSBUX02114 (SSRT061115 rev.1 - HP-UX Running Software Distributor Local Elevation of Privilege) to address this issue.
HP HP-UX B.11.11
HP HP-UX B.11.23
HP HP-UX B.11.04
HP HP-UX B.11.00
Solution:
The vendor has released security advisory HPSBUX02114 (SSRT061115 rev.1 - HP-UX Running Software Distributor Local Elevation of Privilege) to address this issue.
HP HP-UX B.11.11
-
HP PHCO_34539
http://itrc.hp.com
HP HP-UX B.11.23
-
HP B.11.23.0606.045
http://itrc.hp.com
HP HP-UX B.11.04
-
HP PHCO_34814
http://itrc.hp.com
HP HP-UX B.11.00
-
HP PHCO_34568
http://itrc.hp.com
References
HP-UX Software Distributor SWPackage Local Buffer Overflow Vulnerability
References:
References:
- ASA-2006-106 - HP-UX Running Software Distributor Local Elevation of Privilege (Avaya)
- Vendor Homepage (Hewlett-Packard )