Sun reports that a unprivileged user may be able to execute arbitrary commands with the permissions of the sadmind(1M) daemon on Solaris systems which have sadmind(1M) enabled in inetd.conf(4).
"The sadmind(1M) daemon normally runs with "root" (uid 0) privileges. If the sadmind(1M) daemon is utilizing the default security level authentication mechanism of AUTH_SYS (see secure_rpc(3NSL)), users may be able to forge AUTH_SYS credentials."
The operating systems affected are: Sun Solaris 9, Sun Solaris 8 and Sun Solaris 7.
More information is found at
http://au.sunsolve.sun.com/pub-cgi/retrieve.pl?doc=fsalert%2F56740&zone_32=category%3Asecurity
Read up on the latest ideas and technologies from companies that sell hardware, software and services. Keeping your SQL Server Going 24x7
Multiple suppliers - a common culture
How to Beef Up Your Sales Pipeline
Wireless LANs: Is My Enterprise At Risk?
Customer Experience Management: Improving the Consistency and Quality of Customer Interactions
Speeding business innovation with Data Centre Transformation solutions
Providing Business Continuity and Disaster Recovery for Microsoft Cluster Server and Windows Server 08 Failover Clustering Apps
5 steps to getting started with data loss prevention
Zones provide focussed content from Computerworld and leading technology partners.

















Comments
Post new comment