The getdbm procedure in ypxfrd allows local users to read arbitrary files, and remote attackers to read databases outside /var/yp, via a directory traversal and symlink attack on the domain and map arguments.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Openlinux | Caldera | 2.2 (including) | 2.2 (including) |
| Openlinux | Caldera | 2.3 (including) | 2.3 (including) |
| Openlinux | Caldera | 2.4 (including) | 2.4 (including) |
| Openserver | Sco | 5.0.5 (including) | 5.0.5 (including) |
| Openserver | Sco | 5.0.6 (including) | 5.0.6 (including) |
| Openserver | Sco | 5.0.6a (including) | 5.0.6a (including) |
| Solaris | Sun | 9.0 (including) | 9.0 (including) |
| Sunos | Sun | 5.7 (including) | 5.7 (including) |
| Sunos | Sun | 5.8 (including) | 5.8 (including) |