AIX pdnsd Buffer Overflow Vulnerability
BID:3237
Info
AIX pdnsd Buffer Overflow Vulnerability
| Bugtraq ID: | 3237 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 17 1999 12:00AM |
| Updated: | Aug 17 1999 12:00AM |
| Credit: | Published in IBM Security Advisory ERS-SVA-E01-1999:003.1 on August 17, 1999. |
| Vulnerable: |
IBM AIX 4.2.1 IBM AIX 4.2 IBM AIX 4.1.5 IBM AIX 4.1.4 IBM AIX 4.1.3 IBM AIX 4.1.2 IBM AIX 4.1.1 IBM AIX 4.1 |
| Not Vulnerable: | |
Discussion
AIX pdnsd Buffer Overflow Vulnerability
The Source Code Browser's Program Database Name Server Daemon (pdnsd) component of the C Set ++ compiler for AIX contains a remotely exploitable buffer overflow. This vulnerability allows local or remote attackers to compromise root privileges on vulnerable systems.
The Source Code Browser's Program Database Name Server Daemon (pdnsd) component of the C Set ++ compiler for AIX contains a remotely exploitable buffer overflow. This vulnerability allows local or remote attackers to compromise root privileges on vulnerable systems.
Solution / Fix
AIX pdnsd Buffer Overflow Vulnerability
Solution:
IBM has released an official statement regarding this issue:
"Associated product out of service; Customers avised to disable and/or uninstall."
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
IBM has released an official statement regarding this issue:
"Associated product out of service; Customers avised to disable and/or uninstall."
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
AIX pdnsd Buffer Overflow Vulnerability
References:
References: