Digital Unix MSGCHK Buffer Overflow Vulnerability
BID:3311
Info
Digital Unix MSGCHK Buffer Overflow Vulnerability
| Bugtraq ID: | 3311 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2001-1093 |
| Remote: | No |
| Local: | Yes |
| Published: | Sep 10 2001 12:00AM |
| Updated: | Jul 11 2009 07:56AM |
| Credit: | This vulnerability was announced via the Bugtraq mailing list by Seunghyun Seo <[email protected]> on September 10, 2001. |
| Vulnerable: |
Digital (Compaq) TRU64/DIGITAL UNIX 4.0 g Digital (Compaq) TRU64/DIGITAL UNIX 4.0 f Digital (Compaq) TRU64/DIGITAL UNIX 4.0 e Digital (Compaq) TRU64/DIGITAL UNIX 4.0 d |
| Not Vulnerable: | |
Discussion
Digital Unix MSGCHK Buffer Overflow Vulnerability
The msgchk utility under certain versions of Digital Unix contains a buffer overflow vulnerability which could yield root privilege.
If a local user invokes the msgchk utility at the command line, argumented with a sufficiently long string of bytes, a buffer overflow condition can be triggered. Where msgchk runs suid root, this can allow hostile code to be executed as root, granting an attacker administrative access to the vulnerable system.
The msgchk utility under certain versions of Digital Unix contains a buffer overflow vulnerability which could yield root privilege.
If a local user invokes the msgchk utility at the command line, argumented with a sufficiently long string of bytes, a buffer overflow condition can be triggered. Where msgchk runs suid root, this can allow hostile code to be executed as root, granting an attacker administrative access to the vulnerable system.
Exploit / POC
Digital Unix MSGCHK Buffer Overflow Vulnerability
msgchkx.c courtesy Seunghyun Seo <[email protected]>
msgchkx.c courtesy Seunghyun Seo <[email protected]>
Solution / Fix
Digital Unix MSGCHK Buffer Overflow Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Digital Unix MSGCHK Buffer Overflow Vulnerability
References:
References: