安全研究

安全漏洞
SGI IRIX MapElf32Exec未明本地拒绝服务漏洞

发布日期:2004-06-14
更新日期:2004-06-21

受影响系统:
SGI IRIX 6.5.25
SGI IRIX 6.5.24
SGI IRIX 6.5.23
SGI IRIX 6.5.22
SGI IRIX 6.5.21 m
SGI IRIX 6.5.21 f
SGI IRIX 6.5.21
SGI IRIX 6.5.20 m
SGI IRIX 6.5.20 f
描述:
BUGTRAQ  ID: 10547
CVE(CAN) ID: CVE-2004-0136

IRIX是一款由SGI公司开发和维护的商业性质UNIX操作系统。

IRIX中恶意二进制程序使用mapelf32exec()调用时存在问题,本地攻击者可以利用这个漏洞对系统进行拒绝服务攻击。

目前没有详细漏洞细节提供。

<*来源:SGI Security Advisory
  
  链接:ftp://patches.sgi.com/support/free/security/advisories/20040601-01-P
*>

建议:
厂商补丁:

SGI
---
SGI已经为此发布了一个安全公告(20040601-01-P)以及相应补丁:
20040601-01-P:IRIX syssgi system call vulnerability and other security fixes
链接:ftp://patches.sgi.com/support/free/security/advisories/20040601-01-P

相关补丁信息:

系统版本       是否受影响      补丁号         备注
----------     -----------     -------      -------------
IRIX 3.x        未知                     备注 1
IRIX 4.x        未知                     备注 1
IRIX 5.x        未知                     备注 1
IRIX 6.0.x      未知                     备注 1
IRIX 6.1        未知                     备注 1
IRIX 6.2        未知                     备注 1
IRIX 6.3        未知                     备注 1
IRIX 6.4        未知                     备注 1
IRIX 6.5        未知                     备注 1
IRIX 6.5.1      未知                     备注 1
IRIX 6.5.2      未知                     备注 1
IRIX 6.5.3      未知                     备注 1
IRIX 6.5.4      未知                     备注 1
IRIX 6.5.5      未知                     备注 1
IRIX 6.5.6      未知                     备注 1
IRIX 6.5.7      未知                     备注 1
IRIX 6.5.8      未知                     备注 1
IRIX 6.5.9      未知                     备注 1
IRIX 6.5.10     未知                     备注 1
IRIX 6.5.11     未知                     备注 1
IRIX 6.5.12     未知                     备注 1
IRIX 6.5.13     未知                     备注 1
IRIX 6.5.14     未知                     备注 1
IRIX 6.5.15     未知                     备注 1
IRIX 6.5.16     未知                     备注 1
IRIX 6.5.17     未知                     备注 1
IRIX 6.5.18     未知                     备注 1
IRIX 6.5.19     未知                     备注 1

IRIX 6.5.20m      是     5625 & 5548    备注2 & 3 & 4
                        或5626 & 5548

IRIX 6.5.20f      是     5627 & 5549     备注2 & 3 & 5
                        或5628 & 5549

IRIX 6.5.21m      是     5621 & 5550    备注2 & 3 & 6
                        或5620 & 5550

IRIX 6.5.21f      是     5622 & 5551    备注 2 & 3

IRIX 6.5.22       是     5613 & 5630    备注 2 & 3

IRIX 6.5.23       是     5619 & 5553    备注 2 & 3

IRIX 6.5.24       是     5624 & 5593    备注 2 & 3

IRIX 6.5.25       no


备注:
  
1) 这个版本的IRIX系统已经不再被维护了,请升级到受支持的版本,参看
   http://support.sgi.com来获得更多的信息。

2) 如果你还未收到一张IRIX 6.5.x for IRIX 6.5的CD,请联系SGI的支持部门,或访问:http://support.sgi.com

3) 安装补丁。

4) Patches 5625 & 5548用于除IP35系统的平台。
   Patches 5626 & 5548用于IP35系统的平台。

5) Patches 5627 & 5549用于除IP35系统的平台。
   Patches 5628 & 5549用于IP35系统的平台。
  
6) Patches 5621 & 5550用于除IP35系统的平台。
   Patches 5620 & 5550用于IP35系统的平台。
  
补丁文件校验如下:

Filename:                 README.patch.5548
Algorithm #1 (sum -r):    26166 9 README.patch.5548
Algorithm #2 (sum):       18572 9 README.patch.5548
MD5 checksum:             B959E9138AC13D5B4D3EC58AB9787316

Filename:                 patchSG0005548
Algorithm #1 (sum -r):    13142 5 patchSG0005548
Algorithm #2 (sum):       13101 5 patchSG0005548
MD5 checksum:             2F4B0DE6EDA3EC7FE877C1C30FB24792

Filename:                 patchSG0005548.eoe_sw
Algorithm #1 (sum -r):    33151 18039 patchSG0005548.eoe_sw
Algorithm #2 (sum):       18823 18039 patchSG0005548.eoe_sw
MD5 checksum:             8E5E40C1A89A31A563FB3B49D868D380

Filename:                 patchSG0005548.idb
Algorithm #1 (sum -r):    26717 29 patchSG0005548.idb
Algorithm #2 (sum):       13280 29 patchSG0005548.idb
MD5 checksum:             D08197D45FC6933C49E0C1893153B900

Filename:                 README.patch.5549
Algorithm #1 (sum -r):    40030 9 README.patch.5549
Algorithm #2 (sum):       20807 9 README.patch.5549
MD5 checksum:             2761D23E07FFE86E5E7D18DDB0BE9D97

Filename:                 patchSG0005549
Algorithm #1 (sum -r):    43400 2 patchSG0005549
Algorithm #2 (sum):       51896 2 patchSG0005549
MD5 checksum:             44C8DA9E91DDA27D9E8D01CF9891B0B3

Filename:                 patchSG0005549.eoe_sw
Algorithm #1 (sum -r):    15049 15542 patchSG0005549.eoe_sw
Algorithm #2 (sum):       17768 15542 patchSG0005549.eoe_sw
MD5 checksum:             616E1E9D8F084CFF3770B871B3FD10C3

Filename:                 patchSG0005549.idb
Algorithm #1 (sum -r):    57827 9 patchSG0005549.idb
Algorithm #2 (sum):       246 9 patchSG0005549.idb
MD5 checksum:             E4F8FEEA0E751B0FE56FB138604E6129

Filename:                 README.patch.5550
Algorithm #1 (sum -r):    54963 8 README.patch.5550
Algorithm #2 (sum):       41537 8 README.patch.5550
MD5 checksum:             DD131FE14A646E8D8D78A21F24C489C3

Filename:                 patchSG0005550
Algorithm #1 (sum -r):    16785 1 patchSG0005550
Algorithm #2 (sum):       32514 1 patchSG0005550
MD5 checksum:             E27BB553CC350FEDF2EBD0A215AF0013

Filename:                 patchSG0005550.eoe_sw
Algorithm #1 (sum -r):    00937 13396 patchSG0005550.eoe_sw
Algorithm #2 (sum):       57917 13396 patchSG0005550.eoe_sw
MD5 checksum:             8D5320961B39E8998D54D15BF3B45D14

Filename:                 patchSG0005550.idb
Algorithm #1 (sum -r):    51844 8 patchSG0005550.idb
Algorithm #2 (sum):       38152 8 patchSG0005550.idb
MD5 checksum:             A83324F8F4140ACAD4643447948B006F

Filename:                 README.patch.5551
Algorithm #1 (sum -r):    55602 8 README.patch.5551
Algorithm #2 (sum):       33151 8 README.patch.5551
MD5 checksum:             8D66DD9494365B233F6C01515EA97F3A

Filename:                 patchSG0005551
Algorithm #1 (sum -r):    10276 2 patchSG0005551
Algorithm #2 (sum):       38762 2 patchSG0005551
MD5 checksum:             2762694336F92F9439683849097C4126

Filename:                 patchSG0005551.eoe_sw
Algorithm #1 (sum -r):    29512 14002 patchSG0005551.eoe_sw
Algorithm #2 (sum):       23969 14002 patchSG0005551.eoe_sw
MD5 checksum:             64F405B6C5E2B9DC04310BD9F10CEE09

Filename:                 patchSG0005551.idb
Algorithm #1 (sum -r):    30570 8 patchSG0005551.idb
Algorithm #2 (sum):       38288 8 patchSG0005551.idb
MD5 checksum:             307BA9B2855ED1E5A061125F7C358D6E

Filename:                 README.patch.5553
Algorithm #1 (sum -r):    46824 8 README.patch.5553
Algorithm #2 (sum):       54465 8 README.patch.5553
MD5 checksum:             24AB2CA3A0CEA9C318E398C2BA436ECD

Filename:                 patchSG0005553
Algorithm #1 (sum -r):    18187 2 patchSG0005553
Algorithm #2 (sum):       38628 2 patchSG0005553
MD5 checksum:             283C010B562210F38D47B510F4CFEB2D

Filename:                 patchSG0005553.eoe_sw
Algorithm #1 (sum -r):    50710 14005 patchSG0005553.eoe_sw
Algorithm #2 (sum):       17756 14005 patchSG0005553.eoe_sw
MD5 checksum:             FE920B46DF530791039CB0AEB93859BE

Filename:                 patchSG0005553.idb
Algorithm #1 (sum -r):    38820 8 patchSG0005553.idb
Algorithm #2 (sum):       38378 8 patchSG0005553.idb
MD5 checksum:             C3BF2CB0F10A2ACBC2074A198A5B569A

Filename:                 README.patch.5593
Algorithm #1 (sum -r):    33394 8 README.patch.5593
Algorithm #2 (sum):       37264 8 README.patch.5593
MD5 checksum:             FB492D4B35E7F1F3F959D8E9923E5556

Filename:                 patchSG0005593
Algorithm #1 (sum -r):    02567 1 patchSG0005593
Algorithm #2 (sum):       34191 1 patchSG0005593
MD5 checksum:             679FF67051E7823560A3E55426E98A30

Filename:                 patchSG0005593.eoe_sw
Algorithm #1 (sum -r):    05976 5136 patchSG0005593.eoe_sw
Algorithm #2 (sum):       15294 5136 patchSG0005593.eoe_sw
MD5 checksum:             F7DA069E3ADE041D5373E5445744DD17

Filename:                 patchSG0005593.idb
Algorithm #1 (sum -r):    02257 4 patchSG0005593.idb
Algorithm #2 (sum):       62883 4 patchSG0005593.idb
MD5 checksum:             58F1EC38146F3A09240222D373ED233F

Filename:                 README.patch.5613
Algorithm #1 (sum -r):    42073 9 README.patch.5613
Algorithm #2 (sum):       22676 9 README.patch.5613
MD5 checksum:             760B9D835D59457C81EA39547AD81A07

Filename:                 patchSG0005613
Algorithm #1 (sum -r):    34590 2 patchSG0005613
Algorithm #2 (sum):       51723 2 patchSG0005613
MD5 checksum:             B28E516B51DCB46B28DC796281511A47

Filename:                 patchSG0005613.eoe_sw
Algorithm #1 (sum -r):    46578 36821 patchSG0005613.eoe_sw
Algorithm #2 (sum):       38369 36821 patchSG0005613.eoe_sw
MD5 checksum:             EDBCB48FE88DE4656FE6800714DAC7FF

Filename:                 patchSG0005613.idb
Algorithm #1 (sum -r):    63612 15 patchSG0005613.idb
Algorithm #2 (sum):       45686 15 patchSG0005613.idb
MD5 checksum:             6CEC4F36E3D60F57F9699A7EF56D6074

Filename:                 README.patch.5619
Algorithm #1 (sum -r):    47907 8 README.patch.5619
Algorithm #2 (sum):       54534 8 README.patch.5619
MD5 checksum:             75D59B715A99F770E92A2AD05DA1B0F1

Filename:                 patchSG0005619
Algorithm #1 (sum -r):    14181 2 patchSG0005619
Algorithm #2 (sum):       51762 2 patchSG0005619
MD5 checksum:             C490E2A95036F2A7161B5E668D1AC001

Filename:                 patchSG0005619.eoe_sw
Algorithm #1 (sum -r):    19884 13028 patchSG0005619.eoe_sw
Algorithm #2 (sum):       63471 13028 patchSG0005619.eoe_sw
MD5 checksum:             00A99E181520EE708B2996686DAFB55D

Filename:                 patchSG0005619.idb
Algorithm #1 (sum -r):    27780 4 patchSG0005619.idb
Algorithm #2 (sum):       30529 4 patchSG0005619.idb
MD5 checksum:             9D7EB526C45A4BC6D326623517B0E425

Filename:                 README.patch.5620
Algorithm #1 (sum -r):    24507 12 README.patch.5620
Algorithm #2 (sum):       48711 12 README.patch.5620
MD5 checksum:             7E5F494F5F96269B643BC9551D80152B

Filename:                 patchSG0005620
Algorithm #1 (sum -r):    60671 2 patchSG0005620
Algorithm #2 (sum):       889 2 patchSG0005620
MD5 checksum:             3666297139A84A7A4403FDC15CC37558

Filename:                 patchSG0005620.eoe_sw
Algorithm #1 (sum -r):    34519 7397 patchSG0005620.eoe_sw
Algorithm #2 (sum):       7306 7397 patchSG0005620.eoe_sw
MD5 checksum:             81EB081C267464AAC5AB6582CF136293

Filename:                 patchSG0005620.idb
Algorithm #1 (sum -r):    12908 7 patchSG0005620.idb
Algorithm #2 (sum):       61443 7 patchSG0005620.idb
MD5 checksum:             1E3A5E0E78CAACE6F22E87DE23DEE439

Filename:                 README.patch.5621
Algorithm #1 (sum -r):    63307 8 README.patch.5621
Algorithm #2 (sum):       52159 8 README.patch.5621
MD5 checksum:             07C7B9A54FFC166E65A5BD232619E00B

Filename:                 patchSG0005621
Algorithm #1 (sum -r):    40823 2 patchSG0005621
Algorithm #2 (sum):       63861 2 patchSG0005621
MD5 checksum:             99251C3CB549561797B1F8A1CF79980E

Filename:                 patchSG0005621.eoe_sw
Algorithm #1 (sum -r):    45374 30306 patchSG0005621.eoe_sw
Algorithm #2 (sum):       14682 30306 patchSG0005621.eoe_sw
MD5 checksum:             473A97E7657925D0B62D87DF525DEF44

Filename:                 patchSG0005621.idb
Algorithm #1 (sum -r):    15244 8 patchSG0005621.idb
Algorithm #2 (sum):       28355 8 patchSG0005621.idb
MD5 checksum:             82A403FBB855A487153BD4CC850966A4

Filename:                 README.patch.5622
Algorithm #1 (sum -r):    49770 14 README.patch.5622
Algorithm #2 (sum):       22274 14 README.patch.5622
MD5 checksum:             027134DBB673814B69F7ED7C90AD76DE

Filename:                 patchSG0005622
Algorithm #1 (sum -r):    06167 7 patchSG0005622
Algorithm #2 (sum):       25624 7 patchSG0005622
MD5 checksum:             B686E557D5A0E16DBAB251D1B752DBA3

Filename:                 patchSG0005622.eoe_sw
Algorithm #1 (sum -r):    37529 49781 patchSG0005622.eoe_sw
Algorithm #2 (sum):       50771 49781 patchSG0005622.eoe_sw
MD5 checksum:             4D1DBCF27D85703BABC2E14ED8EE07A0

Filename:                 patchSG0005622.idb
Algorithm #1 (sum -r):    41854 42 patchSG0005622.idb
Algorithm #2 (sum):       42170 42 patchSG0005622.idb
MD5 checksum:             E40F67E6B748C03790D2B7666E1CDAC3

Filename:                 README.patch.5624
Algorithm #1 (sum -r):    04248 8 README.patch.5624
Algorithm #2 (sum):       38599 8 README.patch.5624
MD5 checksum:             3D521B13E9E18E775A4DE9E53F2BBEF9

Filename:                 patchSG0005624
Algorithm #1 (sum -r):    19099 2 patchSG0005624
Algorithm #2 (sum):       40831 2 patchSG0005624
MD5 checksum:             C08A82E31B62F4598CE6144716D08EB3

Filename:                 patchSG0005624.eoe_sw
Algorithm #1 (sum -r):    52994 12955 patchSG0005624.eoe_sw
Algorithm #2 (sum):       41300 12955 patchSG0005624.eoe_sw
MD5 checksum:             5EDBCF4A63EAFE9589A01FEAD9D453AB

Filename:                 patchSG0005624.idb
Algorithm #1 (sum -r):    60505 4 patchSG0005624.idb
Algorithm #2 (sum):       8691 4 patchSG0005624.idb
MD5 checksum:             FFE79C3C0615F2AD7D434B3D917DDD22

Filename:                 README.patch.5625
Algorithm #1 (sum -r):    15542 9 README.patch.5625
Algorithm #2 (sum):       15653 9 README.patch.5625
MD5 checksum:             2C2AF764C0F16C4A26928A5E14BE9D17

Filename:                 patchSG0005625
Algorithm #1 (sum -r):    13052 3 patchSG0005625
Algorithm #2 (sum):       6954 3 patchSG0005625
MD5 checksum:             6AEB9AFADD02B8E497C5E2EC1E1469DA

Filename:                 patchSG0005625.eoe_sw
Algorithm #1 (sum -r):    15531 33098 patchSG0005625.eoe_sw
Algorithm #2 (sum):       49021 33098 patchSG0005625.eoe_sw
MD5 checksum:             43101702322CC30B9AD37390C255116C

Filename:                 patchSG0005625.idb
Algorithm #1 (sum -r):    15449 14 patchSG0005625.idb
Algorithm #2 (sum):       24970 14 patchSG0005625.idb
MD5 checksum:             8A21763B9C2AD0BD1588C4638770DBF5

Filename:                 README.patch.5626
Algorithm #1 (sum -r):    53691 15 README.patch.5626
Algorithm #2 (sum):       38523 15 README.patch.5626
MD5 checksum:             3892A65973211DFD0A376164BBD179E7

Filename:                 patchSG0005626
Algorithm #1 (sum -r):    54635 3 patchSG0005626
Algorithm #2 (sum):       11312 3 patchSG0005626
MD5 checksum:             A33767648F808FABA3976109AB5CE9CE

Filename:                 patchSG0005626.eoe_sw
Algorithm #1 (sum -r):    01110 8289 patchSG0005626.eoe_sw
Algorithm #2 (sum):       32512 8289 patchSG0005626.eoe_sw
MD5 checksum:             70688C5BD8E662308E06184873010C84

Filename:                 patchSG0005626.idb
Algorithm #1 (sum -r):    14312 9 patchSG0005626.idb
Algorithm #2 (sum):       19430 9 patchSG0005626.idb
MD5 checksum:             D2A38D4A30AE487FF483236BE9286602

Filename:                 README.patch.5627
Algorithm #1 (sum -r):    49579 9 README.patch.5627
Algorithm #2 (sum):       15803 9 README.patch.5627
MD5 checksum:             598DDFB0213F48359BBFC8011983CE21

Filename:                 patchSG0005627
Algorithm #1 (sum -r):    07963 3 patchSG0005627
Algorithm #2 (sum):       15913 3 patchSG0005627
MD5 checksum:             DF0E3929A2640C244533CEAE4BD6F0A2

Filename:                 patchSG0005627.eoe_sw
Algorithm #1 (sum -r):    12832 33899 patchSG0005627.eoe_sw
Algorithm #2 (sum):       64006 33899 patchSG0005627.eoe_sw
MD5 checksum:             9EDDFD950476FCD4B6253C5A57C8F0E2

Filename:                 patchSG0005627.idb
Algorithm #1 (sum -r):    18535 20 patchSG0005627.idb
Algorithm #2 (sum):       4153 20 patchSG0005627.idb
MD5 checksum:             6F08EE7419FC288C21918962A728A1E9

Filename:                 README.patch.5628
Algorithm #1 (sum -r):    51847 15 README.patch.5628
Algorithm #2 (sum):       53488 15 README.patch.5628
MD5 checksum:             C34F5CC744939EDB8594406DB3398A71

Filename:                 patchSG0005628
Algorithm #1 (sum -r):    53187 3 patchSG0005628
Algorithm #2 (sum):       27987 3 patchSG0005628
MD5 checksum:             4D4BF0665913541F5F311C78D0120A03

Filename:                 patchSG0005628.eoe_sw
Algorithm #1 (sum -r):    38508 8652 patchSG0005628.eoe_sw
Algorithm #2 (sum):       30669 8652 patchSG0005628.eoe_sw
MD5 checksum:             00225A71FFDE69141609048BEC64AD50

Filename:                 patchSG0005628.idb
Algorithm #1 (sum -r):    55137 10 patchSG0005628.idb
Algorithm #2 (sum):       47584 10 patchSG0005628.idb
MD5 checksum:             7C7BEEAB09073C6E9BCC6A28622A6C55

Filename:                 README.patch.5630
Algorithm #1 (sum -r):    17066 9 README.patch.5630
Algorithm #2 (sum):       128 9 README.patch.5630
MD5 checksum:             CF061C37CDC86F4611E019B5EC5662B0

Filename:                 patchSG0005630
Algorithm #1 (sum -r):    17588 3 patchSG0005630
Algorithm #2 (sum):       7480 3 patchSG0005630
MD5 checksum:             96A320EBB45A805AB8D962ED71D2D39C

Filename:                 patchSG0005630.eoe_sw
Algorithm #1 (sum -r):    41259 14585 patchSG0005630.eoe_sw
Algorithm #2 (sum):       20688 14585 patchSG0005630.eoe_sw
MD5 checksum:             925FF34025049B474400F1D58C4C935D

Filename:                 patchSG0005630.idb
Algorithm #1 (sum -r):    06151 21 patchSG0005630.idb
Algorithm #2 (sum):       56421 21 patchSG0005630.idb
MD5 checksum:             9E36A630042FC9530FF8247CFF139BC5

浏览次数:3255
严重程度:0(网友投票)
本安全漏洞由绿盟科技翻译整理,版权所有,未经许可,不得转载
绿盟科技给您安全的保障