IBM AIX ERRPT Local Buffer Overflow Vulnerability
BID:5885
Info
IBM AIX ERRPT Local Buffer Overflow Vulnerability
| Bugtraq ID: | 5885 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Sep 27 2002 12:00AM |
| Updated: | Sep 27 2002 12:00AM |
| Credit: | This issue was discovered by IBM. |
| Vulnerable: |
IBM AIX 4.3.3 IBM AIX 4.3.2 IBM AIX 4.3.1 IBM AIX 4.3 IBM AIX 5.1 |
| Not Vulnerable: | |
Discussion
IBM AIX ERRPT Local Buffer Overflow Vulnerability
The IBM AIX errpt command is prone to a locally exploitable buffer overflow condition. It is possible to exploit this condition to execute arbitrary attacker-supplied instructions with root privileges.
The IBM AIX errpt command is prone to a locally exploitable buffer overflow condition. It is possible to exploit this condition to execute arbitrary attacker-supplied instructions with root privileges.
Exploit / POC
IBM AIX ERRPT Local Buffer Overflow Vulnerability
The following proof of concept exploit was provided:
The following proof of concept exploit was provided:
Solution / Fix
IBM AIX ERRPT Local Buffer Overflow Vulnerability
Solution:
The vendor has provided fixes for IBM AIX 4.3.3 and 5.1.0:
IBM AIX 5.1
IBM AIX 4.3
IBM AIX 4.3.1
IBM AIX 4.3.2
IBM AIX 4.3.3
Solution:
The vendor has provided fixes for IBM AIX 4.3.3 and 5.1.0:
IBM AIX 5.1
-
IBM IY31320
http://www.ibm.com/support
IBM AIX 4.3
-
IBM IY31320
http://www.ibm.com/support
IBM AIX 4.3.1
-
IBM IY31320
http://www.ibm.com/support
IBM AIX 4.3.2
-
IBM IY31320
http://www.ibm.com/support
IBM AIX 4.3.3
-
IBM IY31320
http://www.ibm.com/support
References
IBM AIX ERRPT Local Buffer Overflow Vulnerability
References:
References:
- Buffer overflow vulnerability in errpt command (SecurityTracker)