Security Vulnerability With NIS server ypserv(1M) May Allow a Denial of Service (DoS) to Occur



Category :Security
Release Phase :Resolved
Product :Solaris 9 Operating System
Solaris 10 Operating System
Solaris 8 Operating System  
Bug Id :6332906  
Date of Resolved Release :13-JUL-2006 


Impact

A local or remote unprivileged user may be able to prevent the ypserv(1M) NIS server process from answering NIS name service requests. A Denial of Service (DoS) may occur as clients currently bound to the NIS server may experience hangs or slow performance. Users may no longer be able to log in on affected NIS clients.


Contributing Factors

This issue can occur in the following releases:

SPARC Platform

x86 Platform


Symptoms

Should the described issue occur, the NIS server will no longer respond to client NIS requests. The ypserv(1M) process may no longer be running on the NIS server.

In the following example, ypcat(1) is seen to hang and is thus aborted with Control-C. The ypwhich(1) command displays the NIS server which is found to be otherwise alive:

    $ ypcat hosts | head
    ^C
    $ ypwhich
    yp-server
    $ ping yp-server
    yp-server is alive

On the NIS server, the ypserv(1M) process can be verified with the following command:

    # pgrep ypserv || echo "ypserv not running"

Workaround

To work around the described issue if the NIS server is unresponsive or not running, it can be stopped and restarted by running the following commands (as "root"):

    # /usr/lib/netsvc/yp/ypstop
    # /usr/lib/netsvc/yp/ypstart

Resolution

This issue is addressed in the following releases:

SPARC Platform

x86 Platform






Attachments
This solution has no attachment

 
 
Login Required

You must login and have a valid contract to access Sun's Premium content which includes:

  • Sun Alerts
  • Bugs
  • Patches
  • Solutions
  • White Papers
  • Documentation
  • Support Knowledge

Login Required

You must login and have a valid contract to access Sun's contracted features

Access Legend:

(Login to access)   Sun Contracted Content
(Login to access)   Sun Contracted Feature

Please make use of SunSolve Feedback application by selecting the floating [+] to provide feedback about this specific document.

Search

Article Details
Article ID : 201359
Article Type : Sun Alert
Last reviewed : 2006-08-02
Audience : PUBLIC
Keywords :
Provide feedback  (help)
Page Tools
»  Print This Page
»  Email This Article
»  Bookmark This Article