Sun Solaris Web-Based Enterprise Management Insecure Default File Permissions Vulnerability
BID:6061
Info
Sun Solaris Web-Based Enterprise Management Insecure Default File Permissions Vulnerability
| Bugtraq ID: | 6061 |
| Class: | Configuration Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Oct 29 2002 12:00AM |
| Updated: | Oct 29 2002 12:00AM |
| Credit: | Vulnerability announced in a Sun Security Alert. |
| Vulnerable: |
Sun Solaris 8_x86 Sun Solaris 8_sparc |
| Not Vulnerable: | |
Discussion
Sun Solaris Web-Based Enterprise Management Insecure Default File Permissions Vulnerability
A problem with some releases of Solaris 8 may make it possible for local users to perform unintended actions. The problem is in the Web-Based Enterprise Management (WBEM) component packaged with recent releases of Solaris.
The WBEM packages included with some releases of Solaris install files with insecure permissions. By default, some files contained within WBEM packages are installed with default group-writable permissions, and in some cases default world-writable permissions. This could lead to local users gaining write access to potentially sensitive files, and potentially launching a denial of service or privilege escalation attack. This problem is known to exist in Solaris 8 Update 1/01 and later.
A problem with some releases of Solaris 8 may make it possible for local users to perform unintended actions. The problem is in the Web-Based Enterprise Management (WBEM) component packaged with recent releases of Solaris.
The WBEM packages included with some releases of Solaris install files with insecure permissions. By default, some files contained within WBEM packages are installed with default group-writable permissions, and in some cases default world-writable permissions. This could lead to local users gaining write access to potentially sensitive files, and potentially launching a denial of service or privilege escalation attack. This problem is known to exist in Solaris 8 Update 1/01 and later.
Exploit / POC
Sun Solaris Web-Based Enterprise Management Insecure Default File Permissions Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Sun Solaris Web-Based Enterprise Management Insecure Default File Permissions Vulnerability
Solution:
Patches available:
Sun Solaris 8_x86
Sun Solaris 8_sparc
Solution:
Patches available:
Sun Solaris 8_x86
-
Sun 109135-27
http://sunsolve.sun.com
Sun Solaris 8_sparc
-
Sun 109134-27
http://sunsolve.sun.com