Solaris CDE/NIS+ screenlock Vulnerability
BID:294
Info
Solaris CDE/NIS+ screenlock Vulnerability
| Bugtraq ID: | 294 |
| Class: | Access Validation Error |
| CVE: |
CVE-1999-1025 |
| Remote: | No |
| Local: | Yes |
| Published: | Oct 12 1998 12:00AM |
| Updated: | Jul 11 2009 12:16AM |
| Credit: | This bug was posted to the Bugtraq mailing list by dbell <[email protected]> Mon, 12 Oct 1998 . |
| Vulnerable: |
Sun Solaris 2.6_x86 Sun Solaris 2.6 |
| Not Vulnerable: |
Sun Solaris 7.0_x86 Sun Solaris 7.0 |
Discussion
Solaris CDE/NIS+ screenlock Vulnerability
If a Solaris 2.6 host is a NIS+ client, and any user other than root is running CDE at the console, CDE's screen locking feature does not work. Any random string is sufficient to unlock to console. It is unclear as to whether versions of Solaris previous to 2.6 running as NIS+ clients are vulnerable to this attack. Version 7.0 is believed to be fixed.
If a Solaris 2.6 host is a NIS+ client, and any user other than root is running CDE at the console, CDE's screen locking feature does not work. Any random string is sufficient to unlock to console. It is unclear as to whether versions of Solaris previous to 2.6 running as NIS+ clients are vulnerable to this attack. Version 7.0 is believed to be fixed.