HP-UX Software Distributor SWModify Local Buffer Overflow Vulnerability
BID:20735
Info
HP-UX Software Distributor SWModify Local Buffer Overflow Vulnerability
| Bugtraq ID: | 20735 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2006-2574 |
| Remote: | No |
| Local: | Yes |
| Published: | May 24 2006 12:00AM |
| Updated: | Oct 26 2006 07:08PM |
| Credit: | The vendor credits NCC Group with the discovery of this vulnerability. |
| Vulnerable: |
HP HP-UX B.11.23 HP HP-UX B.11.11 HP HP-UX B.11.04 HP HP-UX B.11.00 Avaya Predictive Dialer 0 |
| Not Vulnerable: | |
Discussion
HP-UX Software Distributor SWModify Local Buffer Overflow Vulnerability
HP-UX is prone to a local buffer-overflow vulnerability because it fails to properly bounds-check user-supplied input before copying it into an insufficiently sized buffer.
An attacker can exploit this issue to execute arbitrary code with superuser privileges, completely compromising affected computers.
This issue was originally disclosed as part of BID 18098 (HP-UX Software Distributor Unspecified Local Privilege Escalation Vulnerability), but has been assigned its own separate record because of new information.
HP-UX is prone to a local buffer-overflow vulnerability because it fails to properly bounds-check user-supplied input before copying it into an insufficiently sized buffer.
An attacker can exploit this issue to execute arbitrary code with superuser privileges, completely compromising affected computers.
This issue was originally disclosed as part of BID 18098 (HP-UX Software Distributor Unspecified Local Privilege Escalation Vulnerability), but has been assigned its own separate record because of new information.
Exploit / POC
HP-UX Software Distributor SWModify Local Buffer Overflow Vulnerability
The following exploit code is available:
The following exploit code is available:
Solution / Fix
HP-UX Software Distributor SWModify Local Buffer Overflow Vulnerability
Solution:
The vendor has released security advisory HPSBUX02114 (SSRT061115 rev.1 - HP-UX Running Software Distributor Local Elevation of Privilege) to address this issue.
HP HP-UX B.11.23
HP HP-UX B.11.04
HP HP-UX B.11.00
Solution:
The vendor has released security advisory HPSBUX02114 (SSRT061115 rev.1 - HP-UX Running Software Distributor Local Elevation of Privilege) to address this issue.
HP HP-UX B.11.23
-
HP B.11.23.0606.045
http://itrc.hp.com
HP HP-UX B.11.04
-
HP PHCO_34814
http://itrc.hp.com
HP HP-UX B.11.00
-
HP PHCO_34568
http://itrc.hp.com
References
HP-UX Software Distributor SWModify Local Buffer Overflow Vulnerability
References:
References:
- ASA-2006-106 - HP-UX Running Software Distributor Local Elevation of Privilege (Avaya)
- Vendor Homepage (Hewlett-Packard )