|
COMMAND Sun AnswerBook2 remote stack based overflow SYSTEMS AFFECTED Sun AnswerBook2 1.4, 1.4.1, 1.4.2, 1.4.3 PROBLEM In Kevin Kotas of eSecurityOnline [http://www.eSecurityOnline.com] advisory [#5063] : The problem is due to the gettransbitmap CGI that comes with AnswerBook2 not correctly performing bounds checking on the filename argument. A remote attacker can create a request that will result in arbitrary code execution with user daemon privileges. SOLUTION Presently, there are no vendor patches available. As a workaround solution, remove access to the gettransbitmap binary. chmod 0000 <path to>/gettransbitmap Otherwise, disable AnswerBook2.