AIX RCP Insecure Copy Vulnerability
BID:431
Info
AIX RCP Insecure Copy Vulnerability
| Bugtraq ID: | 431 |
| Class: | Origin Validation Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Jun 30 1998 12:00AM |
| Updated: | Jun 30 1998 12:00AM |
| Credit: | This vulnerability was published to the IBM APAR Database on JUne 30, 1998. The SecurityFocus Database entry for this problem is based wholly off that information. |
| Vulnerable: |
IBM AIX 4.3 IBM AIX 4.2.1 |
| Not Vulnerable: |
IBM AIX 4.3.2 |
Discussion
AIX RCP Insecure Copy Vulnerability
Under certain versions of AIX If root has given .rhost permissions to do local to local copies via rcp , non-root users are also granted permissions to copy files as root. This allows the users access to any file on the filesystem.
Under certain versions of AIX If root has given .rhost permissions to do local to local copies via rcp , non-root users are also granted permissions to copy files as root. This allows the users access to any file on the filesystem.
Exploit / POC
AIX RCP Insecure Copy Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution / Fix
AIX RCP Insecure Copy Vulnerability
Solution:
IBM has released the following APAR'S to address this problem:
AIX 4.3
---------
APAR # IX79679
AIX 4.2
----------
APAR # IX78641
Solution:
IBM has released the following APAR'S to address this problem:
AIX 4.3
---------
APAR # IX79679
AIX 4.2
----------
APAR # IX78641
References
AIX RCP Insecure Copy Vulnerability
References:
References:
- AIX Fix Distribution Service (IBM)
- IBM Support Databases (IBM)