BSD/OS UUCP Argument Buffer Overflow Vulnerability
BID:3603
Info
BSD/OS UUCP Argument Buffer Overflow Vulnerability
| Bugtraq ID: | 3603 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Nov 29 2001 12:00AM |
| Updated: | Nov 29 2001 12:00AM |
| Credit: | This vulnerability was announced by Izik <[email protected]> via Bugtraq on November 29, 2001. |
| Vulnerable: |
BSDI BSD/OS 4.2 BSDI BSD/OS 4.1 BSDI BSD/OS 4.0.1 BSDI BSD/OS 4.0 BSDI BSD/OS 3.1 BSDI BSD/OS 3.0 |
| Not Vulnerable: | |
Discussion
BSD/OS UUCP Argument Buffer Overflow Vulnerability
UUCP is the Unix-to-Unix Copy Protocol infrastructure, implmented with numerous Unix and Unix clone operating systems. This problem affects the BSD/OS implementation.
uucp does not correctly check bounds on arguments supplied to the uucp program when executed. Because of this, it is possible for a local user to supply an arbitrarily long string to uucp upon execution, and overwrite variables on the stack. This make it possible for a local user to execute code with the privileges of uucp.
This problem makes it possible for local users to gain elevated privileges, and could lead to further compromise of a vulnerable host.
UUCP is the Unix-to-Unix Copy Protocol infrastructure, implmented with numerous Unix and Unix clone operating systems. This problem affects the BSD/OS implementation.
uucp does not correctly check bounds on arguments supplied to the uucp program when executed. Because of this, it is possible for a local user to supply an arbitrarily long string to uucp upon execution, and overwrite variables on the stack. This make it possible for a local user to execute code with the privileges of uucp.
This problem makes it possible for local users to gain elevated privileges, and could lead to further compromise of a vulnerable host.
Exploit / POC
Solution / Fix
BSD/OS UUCP Argument Buffer Overflow Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
BSD/OS UUCP Argument Buffer Overflow Vulnerability
References:
References: