Citadel/UX Weak Internal Program Authentication Key Vulnerability
BID:8193
Info
Citadel/UX Weak Internal Program Authentication Key Vulnerability
| Bugtraq ID: | 8193 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 15 2003 12:00AM |
| Updated: | Jul 15 2003 12:00AM |
| Credit: | Discovery of this vulnerability has been credited to Carl Livitt <[email protected]> and br00t <[email protected]>. |
| Vulnerable: |
Citadel/UX Citadel/UX 6.0 7 Citadel/UX Citadel/UX 5.90 |
| Not Vulnerable: |
Citadel/UX Citadel/UX 6.0 8 |
Discussion
Citadel/UX Weak Internal Program Authentication Key Vulnerability
Citadel/UX uses an authentication key exchange process, normally used to authenticate to the Citadel/UX as an internal trusted program (IPGM).
A vulnerability has been reported for Citadel/UX, the issue presents itself in the procedure used by Citadel/UX to generate the internal program authentication key. The affected server derives a low entropy key that can be easily replicated.
If successful a remote attacker may authenticate with the affected server as a trusted program, and consequently attain elevated privileges.
Citadel/UX uses an authentication key exchange process, normally used to authenticate to the Citadel/UX as an internal trusted program (IPGM).
A vulnerability has been reported for Citadel/UX, the issue presents itself in the procedure used by Citadel/UX to generate the internal program authentication key. The affected server derives a low entropy key that can be easily replicated.
If successful a remote attacker may authenticate with the affected server as a trusted program, and consequently attain elevated privileges.
Exploit / POC
Citadel/UX Weak Internal Program Authentication Key Vulnerability
The following proof of concept exploit, brute forces the IPGM authentication key and subsequently exploits the issue described in BID 8191:
The following proof of concept exploit, brute forces the IPGM authentication key and subsequently exploits the issue described in BID 8191:
Solution / Fix
Citadel/UX Weak Internal Program Authentication Key Vulnerability
Solution:
The vendor has released an upgrade to address this issue:
Citadel/UX Citadel/UX 5.90
Citadel/UX Citadel/UX 6.0 7
Solution:
The vendor has released an upgrade to address this issue:
Citadel/UX Citadel/UX 5.90
-
Citadel/UX Citadel/UX 6.08
http://www.citadel.org/download.php
Citadel/UX Citadel/UX 6.0 7
-
Citadel/UX Citadel/UX 6.08
http://www.citadel.org/download.php
References
Citadel/UX Weak Internal Program Authentication Key Vulnerability
References:
References:
- Citadel/UX Homepage (Citadel/UX)