Executive brief
A security vulnerability exists in the ufsrestore utility of the Solaris operating system, which is used for restoring file system backups. A local attacker could exploit this flaw to gain unauthorized access or take full control of the affected system. This could lead to the theft of sensitive data, system instability, or a complete compromise of the server's integrity.
Technical details
A buffer overflow vulnerability exists in the 'ufsrestore' utility within Sun Solaris 2.5 and 2.5.1 (SunOS 5.5 and 5.5.1). The flaw is classified as an improper restriction of operations within the bounds of a memory buffer (CWE-119). A local attacker can exploit this by providing specially crafted input to the utility, leading to memory corruption. Successful exploitation can allow the attacker to execute arbitrary code with elevated privileges, potentially gaining root access. The vulnerability is reachable locally without requiring specific user interaction.
Affected products
- Sun Microsystems Solaris 2.5, 2.5.1
- Sun Microsystems SunOS 5.5, 5.5.1
Timeline
- 1998-04-29: disclosed
- 1998-04-29: advisory