Executive brief
Transarc DCE Distributed File System (DFS) is a legacy system used for sharing files across a network. A flaw in how the system handles users with many group memberships could allow an authorized user to bypass security restrictions. This could result in unauthorized access to sensitive files or resources protected by the file system.
Technical details
A vulnerability exists in Transarc DCE Distributed File System (DFS) 1.1 running on Solaris 2.4 and 2.5 due to improper initialization of the user grouplist. When a user belongs to a large number of groups, the system fails to correctly process the group memberships, potentially leading to an incorrect security context. A local attacker with an existing account can exploit this flaw to gain unauthorized access to DFS-protected resources that they should not be able to reach. The issue is rooted in the handling of group arrays or buffers during the authentication/authorization phase. Patch information was historically available via Transarc/CERT bulletins, though the product is now legacy.
Affected products
- Transarc DCE Distributed File System (DFS) 1.1 Solaris 2.4 and 2.5
Timeline
- 1996-09-17: disclosed
- 1996-09-17: advisory: NVD Published Date