Platform LSF SetUID Executables Vulnerability
BID:3689
Info
Platform LSF SetUID Executables Vulnerability
| Bugtraq ID: | 3689 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Unknown |
| Local: | Yes |
| Published: | Dec 05 2001 12:00AM |
| Updated: | Dec 05 2001 12:00AM |
| Credit: | This vulnerability was submitted to BugTraq on December 5th, 2001 by Tomasz Grabowski <[email protected]>. |
| Vulnerable: |
Platform LSF 4.2 Platform LSF 4.0 |
| Not Vulnerable: | |
Discussion
Platform LSF SetUID Executables Vulnerability
LSF(Load Sharing Facility) is a series of tools for scheduling, monitoring and analyzing the workload of a network. It supports a number of Unix platforms and can also be used to manage workstations running the Microsoft Windows NT/2000 platforms.
Using Privileged Ports Authentication (setuid) instead of EAuth (External Authentication) introduces a security vulnerability to hosts running LSF.
Using Privileged Ports Authentication (setuid) causes all LSF executables to be installed setuid root. A number of LSF executables are prone to exploitable buffer overflows, allowing arbitrary code execution and escalation of privileges.
Most of these executables are exploitable locally, though a possibility exists that an attacker may contrive a way to exploit some of these issues remotely.
LSF(Load Sharing Facility) is a series of tools for scheduling, monitoring and analyzing the workload of a network. It supports a number of Unix platforms and can also be used to manage workstations running the Microsoft Windows NT/2000 platforms.
Using Privileged Ports Authentication (setuid) instead of EAuth (External Authentication) introduces a security vulnerability to hosts running LSF.
Using Privileged Ports Authentication (setuid) causes all LSF executables to be installed setuid root. A number of LSF executables are prone to exploitable buffer overflows, allowing arbitrary code execution and escalation of privileges.
Most of these executables are exploitable locally, though a possibility exists that an attacker may contrive a way to exploit some of these issues remotely.
Exploit / POC
Platform LSF SetUID Executables Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Platform LSF SetUID Executables Vulnerability
Solution:
Patches are available for LSF 4.2. Users should contact Technical Support <[email protected]> for the exact details about which patches to obtain.
Platform LSF 4.2
Solution:
Patches are available for LSF 4.2. Users should contact Technical Support <[email protected]> for the exact details about which patches to obtain.
Platform LSF 4.2
-
Platform LSF 4.2
ftp.platform.com