SGI IRIX Multiple Name Service Daemon Vulnerabilities
BID:8218
Info
SGI IRIX Multiple Name Service Daemon Vulnerabilities
| Bugtraq ID: | 8218 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Jul 16 2003 12:00AM |
| Updated: | Jul 16 2003 12:00AM |
| Credit: | These issues were disclosed by the vendor. |
| Vulnerable: |
SGI IRIX 6.5.20 m SGI IRIX 6.5.20 f SGI IRIX 6.5.19 m SGI IRIX 6.5.19 f SGI IRIX 6.5.18 m SGI IRIX 6.5.18 f SGI IRIX 6.5.17 m SGI IRIX 6.5.17 f SGI IRIX 6.5.16 m SGI IRIX 6.5.16 f SGI IRIX 6.5.15 m SGI IRIX 6.5.15 f SGI IRIX 6.5.14 SGI IRIX 6.5.13 SGI IRIX 6.5.12 SGI IRIX 6.5.11 SGI IRIX 6.5.10 SGI IRIX 6.5.9 SGI IRIX 6.5.8 SGI IRIX 6.5.7 SGI IRIX 6.5.6 SGI IRIX 6.5.5 SGI IRIX 6.5.4 SGI IRIX 6.5.3 SGI IRIX 6.5.2 SGI IRIX 6.5.1 SGI IRIX 6.5 |
| Not Vulnerable: |
SGI IRIX 6.5.21 |
Discussion
SGI IRIX Multiple Name Service Daemon Vulnerabilities
SGI IRIX has announced the release of several patches that address multiple vulnerabilities in the SGI IRIX name service daemon implementation. The patch contains bug fixes for a number of new security issues.
These new security issues are both local and remote in nature and may allow privilege escalation attacks, denial of services or various degrees of security policy bypass. Symantec is currently undergoing analysis of these issues and will be releasing individual BIDs describing these issues, where it is appropriate.
SGI IRIX administrators who are affected are advised to apply the relevant patch as soon as possible to prevent exploitation of any previously known or new security issues.
SGI IRIX has announced the release of several patches that address multiple vulnerabilities in the SGI IRIX name service daemon implementation. The patch contains bug fixes for a number of new security issues.
These new security issues are both local and remote in nature and may allow privilege escalation attacks, denial of services or various degrees of security policy bypass. Symantec is currently undergoing analysis of these issues and will be releasing individual BIDs describing these issues, where it is appropriate.
SGI IRIX administrators who are affected are advised to apply the relevant patch as soon as possible to prevent exploitation of any previously known or new security issues.
Exploit / POC
SGI IRIX Multiple Name Service Daemon Vulnerabilities
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
SGI IRIX Multiple Name Service Daemon Vulnerabilities
Solution:
SGI advises affected users to upgrade to IRIX version 6.5.21, or install the updates provided. Depending on the version, patch number 5123 to 5133 and 5156. More information can be found in the referenced advisory ( 20030701-01-P).
Solution:
SGI advises affected users to upgrade to IRIX version 6.5.21, or install the updates provided. Depending on the version, patch number 5123 to 5133 and 5156. More information can be found in the referenced advisory ( 20030701-01-P).
References
SGI IRIX Multiple Name Service Daemon Vulnerabilities
References:
References:
- Multiple Vulnerabilities in Name Service Daemon (nsd) on IRIX (SGI Security Coordinator
)