Security Vulnerability in the Netscape Portable Runtime (NSPR) API Affects Solaris



Category :Security
Release Phase :Resolved
Product :Solaris 10 Operating System  
Bug Id :6467033  
Date of Resolved Release :11-OCT-2006 


Impact

A security vulnerability in the Netscape Portable Runtime (NSPR) API may allow a local unprivileged user to overwrite or create any file on the system which could lead to privilege escalation or a Denial of Service (DoS).

Additional information regarding this issue is available at:

Sun acknowledges with thanks, iDefense (http://www.idefense.com), for bringing this issue to our attention.

iDefense credits an anonymous researcher working with the iDefense Vulnerability Contributor Program for the discovery of this issue.


Contributing Factors

This issue can occur in the following releases:

SPARC Platform

x86 Platform

Note: Solaris 8 and Solaris 9 are not impacted by this issue. However, third party software may use NSPR. This third party software would need to be setuid to be vulnerable. Please contact your Vendor.


Symptoms

There are no predictable symptoms that would show the described issue has been exploited, as it depends on which file is overwritten or created.


Workaround

There is no workaround.  Please see Resolution section below.


Resolution

This issue is addressed in the following releases:

SPARC Platform

x86 Platform

Note: Solaris 8 and Solaris 9 are not impacted by this issue. However, you can download the following patches to fix potential third party software vulnerabilities.

SPARC Platform

x86 Platform

Linux Platform

HP-UX Platform

Note: NSPR is not available for Solaris 8 on the x86 platform.






Attachments
This solution has no attachment

 
 
Login Required

You must login and have a valid contract to access Sun's Premium content which includes:

  • Sun Alerts
  • Bugs
  • Patches
  • Solutions
  • White Papers
  • Documentation
  • Support Knowledge

Login Required

You must login and have a valid contract to access Sun's contracted features

Access Legend:

(Login to access)   Sun Contracted Content
(Login to access)   Sun Contracted Feature

Please make use of SunSolve Feedback application by selecting the floating [+] to provide feedback about this specific document.

Search

Article Details
Article ID : 228557
Article Type : Sun Alert
Last reviewed : 2007-01-12
Audience : PUBLIC
Keywords :
Provide feedback  (help)
Page Tools
»  Print This Page
»  Email This Article
»  Bookmark This Article