Security Vulnerability in PC Netlink 2.0 "slsmgr" May Allow Files to be Opened Insecurely



Category :Security
Release Phase :Resolved
Product :Solaris PC NetLink 2.0  
Bug Id :6215629  
Date of Resolved Release :23-DEC-2005 


Impact

A security vulnerability in the "/opt/lanman/sbin/slsmgr" command in PC NetLink 2.0 may allow files to be opened insecurely, which could allow an unprivileged local user the ability to write to the filesystem with the permissions of the user running "slsmgr." If "slsmgr" is run as "root," it may allow a local unprivileged user to gain elevated privileges on the system and run arbitrary commands.


Contributing Factors

This issue can occur in the following release:

SPARC Platform

  • PC NetLink 2.0 (for Solaris 7, 8 and 9) without patch 121209-01

Notes:

  1. Solaris for x86 is not affected by this issue.
  2. Solaris 10 is not affected by this issue.
  3. PC NetLink 1.0, 1.1 and 1.2 are not affected by this issue.

To determine the version of PC NetLink on a system, the following command can be run:

    $ /opt/lanman/bin/net version
    Solaris (TM) PC NetLink, Version 2.0,REV=2.0.xx
    UNIX Systems Server

To determine if the SUNWlzag package (for slsmgr) is installed on a system, the following command can be run:

    $ pkginfo -l SUNWlzag
      PKGINST:  SUNWlzag
         NAME:  Solaris (TM) PC NetLink Adm GUI
     CATEGORY:  system
         ARCH:  sparc
      VERSION:  2.0,REV=rr24
      BASEDIR:  /
       VENDOR:  Sun Microsystems, Inc.
         DESC:  Solaris (TM) PC NetLink Administration Java GUI components

Symptoms

There are no predictable symptoms that would indicate the described issue has been exploited.


Workaround

There is no workaround for this issue. Please see the "Resolution" section below.


Resolution

This issue is addressed in the following release:

SPARC Platform

  • PC NetLink 2.0 (for Solaris 7, 8 and 9) with patch 121209-01 or later





Attachments
This solution has no attachment

 
 
Login Required

You must login and have a valid contract to access Sun's Premium content which includes:

  • Sun Alerts
  • Bugs
  • Patches
  • Solutions
  • White Papers
  • Documentation
  • Support Knowledge

Login Required

You must login and have a valid contract to access Sun's contracted features

Access Legend:

(Login to access)   Sun Contracted Content
(Login to access)   Sun Contracted Feature

Please make use of SunSolve Feedback application by selecting the floating [+] to provide feedback about this specific document.

Search

Article Details
Article ID : 201793
Article Type : Sun Alert
Last reviewed : 2006-04-21
Audience : PUBLIC
Keywords :
Provide feedback  (help)
Page Tools
»  Print This Page
»  Email This Article
»  Bookmark This Article
 
Contact About Sun News & Events Employment Site Map Privacy Terms of Use Trademarks Copyright Sun Microsystems, Inc. | SunSolve Version 7.4.0 #1