HP-UX RWrite Buffer Overflow Vulnerability
BID:7489
Info
HP-UX RWrite Buffer Overflow Vulnerability
| Bugtraq ID: | 7489 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | May 02 2003 12:00AM |
| Updated: | May 02 2003 12:00AM |
| Credit: | Discovery of this vulnerability has been credited to [email protected]. |
| Vulnerable: |
HP HP-UX 11.11 HP HP-UX 11.0 |
| Not Vulnerable: | |
Discussion
HP-UX RWrite Buffer Overflow Vulnerability
HP-UX rwrite utility has been reported prone to a buffer overflow vulnerability. Although unconfirmed code execution with elevated privileges may be possible.
The condition presents itself when excessive data is supplied as part of an argument passed to the vulnerable utility. Due to the lack of bounds checking, the vulnerable utility will crash.
The precise technical details of this vulnerability are currently unknown. This BID will be updated, as further information is available.
HP-UX rwrite utility has been reported prone to a buffer overflow vulnerability. Although unconfirmed code execution with elevated privileges may be possible.
The condition presents itself when excessive data is supplied as part of an argument passed to the vulnerable utility. Due to the lack of bounds checking, the vulnerable utility will crash.
The precise technical details of this vulnerability are currently unknown. This BID will be updated, as further information is available.
Exploit / POC
HP-UX RWrite Buffer Overflow Vulnerability
The following proof of concept has been provided:
$ /usr/lbin/rwrite something `perl -e 'print "A" x 14628'` something
The following proof of concept has been provided:
$ /usr/lbin/rwrite something `perl -e 'print "A" x 14628'` something
Solution / Fix
HP-UX RWrite Buffer Overflow Vulnerability
Solution:
HP has announced that this vulnerability has been addressed by the patches included in HPSBUX0401-312. Additional information regarding obtaining and applying appropriate patches can be found in the referenced advisory.
HP has announced that this vulnerability has been addressed by the patches included in HPSBUX0208-213. However, conflicting details have been made available suggesting that this patch does not in fact address the issue.
Patch:
HP HP-UX 11.0
Solution:
HP has announced that this vulnerability has been addressed by the patches included in HPSBUX0401-312. Additional information regarding obtaining and applying appropriate patches can be found in the referenced advisory.
HP has announced that this vulnerability has been addressed by the patches included in HPSBUX0208-213. However, conflicting details have been made available suggesting that this patch does not in fact address the issue.
Patch:
HP HP-UX 11.0
-
HP PHCO_27132
http://itrc.hp.com
References
HP-UX RWrite Buffer Overflow Vulnerability
References:
References:
- HP-UX 11.0 /usr/lbin/rwrite ([email protected])
- rwrite buffer overflow in hp-ux (John Morris
)