安全研究

安全漏洞
Sun LPAdmin未明任意本地文件覆盖漏洞

发布日期:2005-06-17
更新日期:2005-06-17

受影响系统:
Sun Solaris 9.0_x86 Update 2
Sun Solaris 9.0_x86
Sun Solaris 9.0
Sun Solaris 8.0_x86
Sun Solaris 8.0
Sun Solaris 7.0_x86
Sun Solaris 7.0
不受影响系统:
Sun Solaris 10_x86
Sun Solaris 10.0
描述:
BUGTRAQ  ID: 13968

Solaris是一款由Sun开发和维护的商业性质UNIX操作系统。

Sun Solaris的lpadmin中存在未明的任意本地文件覆盖漏洞,允许本地非特权用户覆盖任意文件,这可能导致服务崩溃,或执行任意代码。

更多细节不祥。

<*来源:Sun Alert Notification
  
  链接:http://sunsolve.sun.com/search/printfriendly.do?assetkey=1-26-101768-1
*>

建议:
厂商补丁:

Sun
---
Sun已经为此发布了一个安全公告(Sun-Alert-101768)以及相应补丁:
Sun-Alert-101768:Security Vulnerability in the lpadmin(1M) Utility
链接:http://sunsolve.sun.com/search/printfriendly.do?assetkey=1-26-101768-1

Sun Solaris 7.0 _x86
     * Sun Patch 107116-18
       x86
       http://sunsolve.sun.com/search/document.do?assetkey=1-21-107116-18-1
  
Sun Solaris 7.0
     * Sun Patch 107116-18
       x86
       http://sunsolve.sun.com/search/document.do?assetkey=1-21-107116-18-1

Sun Solaris 8.0 _x86
     * Sun Patch 109320-14
       SPARC
       http://sunsolve.sun.com/search/document.do?assetkey=1-21-109320-14-1

     * Sun Patch 109321-14
       x86
       http://sunsolve.sun.com/search/document.do?assetkey=1-21-109321-14-1

Sun Solaris 8.0
     * Sun Patch 109320-14
       SPARC
       http://sunsolve.sun.com/search/document.do?assetkey=1-21-109320-14-1

     * Sun Patch 109321-14
       x86
       http://sunsolve.sun.com/search/document.do?assetkey=1-21-109321-14-1

Sun Solaris 9.0 _x86
     * Sun Patch 113329-07
       SPARC
       http://sunsolve.sun.com/search/document.do?assetkey=1-21-113329-07-1

     * Sun Patch 114980-09
       x86
       http://sunsolve.sun.com/search/document.do?assetkey=1-21-114980-09-1

Sun Solaris 9.0
     * Sun Patch 113329-07
       SPARC
       http://sunsolve.sun.com/search/document.do?assetkey=1-21-113329-07-1

     * Sun Patch 114980-09
       x86
       http://sunsolve.sun.com/search/document.do?assetkey=1-21-114980-09-1

Sun Solaris 9.0 _x86 Update 2
     * Sun Patch 113329-07
       SPARC
       http://sunsolve.sun.com/search/document.do?assetkey=1-21-113329-07-1

      * Sun Patch 114980-09
       x86
       http://sunsolve.sun.com/search/document.do?assetkey=1-21-114980-09-1

浏览次数:2855
严重程度:0(网友投票)
本安全漏洞由绿盟科技翻译整理,版权所有,未经许可,不得转载
绿盟科技给您安全的保障