Multiple Vendor kon2 Local Buffer Overflow Vulnerability
BID:7790
Info
Multiple Vendor kon2 Local Buffer Overflow Vulnerability
| Bugtraq ID: | 7790 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2002-1155 |
| Remote: | No |
| Local: | Yes |
| Published: | Jun 03 2003 12:00AM |
| Updated: | Jul 11 2009 10:06PM |
| Credit: | Discovery of this vulnerability credited to Janusz Niewiadomski. |
| Vulnerable: |
Redhat kon2-0.3.9b-7.i386.rpm Redhat kon2-0.3.9b-6.i386.rpm Redhat kon2-0.3.9b-16.i386.rpm Redhat kon2-0.3.9b-13.i386.rpm kon2 kon2 0.3.9 b |
| Not Vulnerable: | |
Discussion
Multiple Vendor kon2 Local Buffer Overflow Vulnerability
A buffer overflow vulnerability has been reported for the kon2 utility shipped with various Linux distributions. Exploitation of this vulnerability may result in a local attacker obtaining elevated privileges on a vulnerable system.
The vulnerability exists due to insufficient bounds checking performed on some commandline options passed to the vulnerable utility.
A buffer overflow vulnerability has been reported for the kon2 utility shipped with various Linux distributions. Exploitation of this vulnerability may result in a local attacker obtaining elevated privileges on a vulnerable system.
The vulnerability exists due to insufficient bounds checking performed on some commandline options passed to the vulnerable utility.
Exploit / POC
Multiple Vendor kon2 Local Buffer Overflow Vulnerability
The following proof of concept exploits have been supplied by priv8security and c0ntex <[email protected]> respectively.
The following proof of concept exploits have been supplied by priv8security and c0ntex <[email protected]> respectively.
Solution / Fix
Multiple Vendor kon2 Local Buffer Overflow Vulnerability
Solution:
Gentoo Linux has released an advisory. Users who have installed app-i18n/kon2 are advised to upgrade to kon2-0.3.9b-r1 by issuing the following commands:
emerge sync
emerge kon2
emerge clean
Fixes available:
Redhat kon2-0.3.9b-16.i386.rpm
Redhat kon2-0.3.9b-7.i386.rpm
Redhat kon2-0.3.9b-6.i386.rpm
Redhat kon2-0.3.9b-13.i386.rpm
kon2 kon2 0.3.9 b
Solution:
Gentoo Linux has released an advisory. Users who have installed app-i18n/kon2 are advised to upgrade to kon2-0.3.9b-r1 by issuing the following commands:
emerge sync
emerge kon2
emerge clean
Fixes available:
Redhat kon2-0.3.9b-16.i386.rpm
-
Red Hat kon2-0.3.9b-16.9.i386.rpm
ftp://updates.redhat.com/9/en/os/i386/kon2-0.3.9b-16.9.i386.rpm -
Red Hat kon2-fonts-0.3.9b-16.9.i386.rpm
ftp://updates.redhat.com/9/en/os/i386/kon2-fonts-0.3.9b-16.9.i386.rpm
Redhat kon2-0.3.9b-7.i386.rpm
-
Red Hat kon2-0.3.9b-14.7.2.1.i386.rpm
ftp://updates.redhat.com/7.2/en/os/i386/kon2-0.3.9b-14.7.2.1.i386.rpm -
Red Hat kon2-0.3.9b-14.7.3.1.i386.rpm
ftp://updates.redhat.com/7.3/en/os/i386/kon2-0.3.9b-14.7.3.1.i386.rpm -
Red Hat kon2-fonts-0.3.9b-14.7.2.1.i386.rpm
ftp://updates.redhat.com/7.2/en/os/i386/kon2-fonts-0.3.9b-14.7.2.1.i38 6.rpm -
Red Hat kon2-fonts-0.3.9b-14.7.3.1.i386.rpm
ftp://updates.redhat.com/7.3/en/os/i386/kon2-fonts-0.3.9b-14.7.3.1.i38 6.rpm
Redhat kon2-0.3.9b-6.i386.rpm
-
Red Hat kon2-0.3.9b-14.7.1.1.i386.rpm
ftp://updates.redhat.com/7.1/en/os/i386/kon2-0.3.9b-14.7.1.1.i386.rpm -
Red Hat kon2-fonts-0.3.9b-14.7.1.1.i386.rpm
ftp://updates.redhat.com/7.1/en/os/i386/kon2-fonts-0.3.9b-14.7.1.1.i38 6.rpm
Redhat kon2-0.3.9b-13.i386.rpm
-
Red Hat kon2-0.3.9b-14.8.i386.rpm
ftp://updates.redhat.com/8.0/en/os/i386/kon2-0.3.9b-14.8.i386.rpm -
Red Hat kon2-fonts-0.3.9b-14.8.i386.rpm
ftp://updates.redhat.com/8.0/en/os/i386/kon2-fonts-0.3.9b-14.8.i386.rp m
kon2 kon2 0.3.9 b
-
Mandrake kon2-0.3.9b-1.1mdk.i586.rpm
Corporate Server 2.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake kon2-0.3.9b-1.1mdk.i586.rpm
Mandrake Linux 8.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake kon2-0.3.9b-1.1mdk.i586.rpm
Mandrake Linux 9.0
http://www.mandrakesecure.net/en/ftp.php -
Mandrake kon2-0.3.9b-1.1mdk.i586.rpm
Mandrake Linux 9.1
http://www.mandrakesecure.net/en/ftp.php