SAS SASTCPD Memory Corruption Vulnerability
BID:3995
Info
SAS SASTCPD Memory Corruption Vulnerability
| Bugtraq ID: | 3995 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 30 2002 12:00AM |
| Updated: | Jan 30 2002 12:00AM |
| Credit: | Posted to the BugTraq mailing list by rpc <[email protected]>. |
| Vulnerable: |
SAS Integration Technologies 8.0 SAS Base 8.0 |
| Not Vulnerable: | |
Discussion
SAS SASTCPD Memory Corruption Vulnerability
sastcpd is a "Job Spawner" included with the base installation of the SAS Software infrastructure. It is available for various platforms, including Unix, Linux, and Microsoft operating systems.
If the environment variable 'netencralg' is defined, sastcpd will issue a segmentation fault when executed. This is the result of memory corrupt. It may be possible to exploit this vulnerability to execute arbitrary code, although this has not been confirmed. sastcpd runs suid root by default.
This vulnerability has been confirmed under SunOS, although other versions may share this vulnerability.
sastcpd is a "Job Spawner" included with the base installation of the SAS Software infrastructure. It is available for various platforms, including Unix, Linux, and Microsoft operating systems.
If the environment variable 'netencralg' is defined, sastcpd will issue a segmentation fault when executed. This is the result of memory corrupt. It may be possible to exploit this vulnerability to execute arbitrary code, although this has not been confirmed. sastcpd runs suid root by default.
This vulnerability has been confirmed under SunOS, although other versions may share this vulnerability.
Exploit / POC
SAS SASTCPD Memory Corruption Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
SAS SASTCPD Memory Corruption Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
SAS SASTCPD Memory Corruption Vulnerability
References:
References: