FreeWnn jserver JS_MKDIR Metacharacter Command Execution Vulnerability
BID:3860
Info
FreeWnn jserver JS_MKDIR Metacharacter Command Execution Vulnerability
| Bugtraq ID: | 3860 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 11 2002 12:00AM |
| Updated: | Jan 11 2002 12:00AM |
| Credit: | Disclosed by Shadow Penguin Security on Jan. 11, 2002, in SPS Advisory #44. |
| Vulnerable: |
FreeWnn FreeWnn 1.1 |
| Not Vulnerable: |
FreeWnn FreeWnn 1.1.1 -a017 |
Discussion
FreeWnn jserver JS_MKDIR Metacharacter Command Execution Vulnerability
FreeWnn 1.1.0 is a kana-kanji (japanese) translation system. This software is a client-server type application, with the jserver portion acting as a server and performing translations for clients. The jserver component passes unsanitized input from the client via the JS_MKDIR command to a system() libcall, allowing arbitrary command execution with the semi-colon ";" command separation metacharacter. Commands sent in this manner will be executed at the privilege level of the jserver process.
FreeWnn 1.1.0 is a kana-kanji (japanese) translation system. This software is a client-server type application, with the jserver portion acting as a server and performing translations for clients. The jserver component passes unsanitized input from the client via the JS_MKDIR command to a system() libcall, allowing arbitrary command execution with the semi-colon ";" command separation metacharacter. Commands sent in this manner will be executed at the privilege level of the jserver process.
Solution / Fix
FreeWnn jserver JS_MKDIR Metacharacter Command Execution Vulnerability
Solution:
This problem is resolved in FreeWnn 1.1.1-a017. A patch for version 1.1.0 is also available.
FreeWnn FreeWnn 1.1
Solution:
This problem is resolved in FreeWnn 1.1.1-a017. A patch for version 1.1.0 is also available.
FreeWnn FreeWnn 1.1
-
FreeWnn patch-1.1.0-a01
ftp://ftp.etl.go.jp/pub/FreeWnn/patch-1.1.0-a01.gz -
FreeWnn FreeWnn-1.1.1-a017
ftp://ftp.etl.go.jp/pub/FreeWnn/alpha/FreeWnn-1.1.1-a017.tar.gz
References
FreeWnn jserver JS_MKDIR Metacharacter Command Execution Vulnerability
References:
References:
- freewnn (FreeWnn.org)
- SPS Advisory #44 - Wnn jserver JS_MKDIR command vulnerability (Shadow Penguin Security)