The getdbm procedure in ypxfrd allows local users to read arbitrary files, and remote attackers to read databases outside /var/yp, via a directory traversal and symlink attack on the domain and map arguments.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Openlinux | Caldera | 2.2 (including) | 2.2 (including) |
Openlinux | Caldera | 2.3 (including) | 2.3 (including) |
Openlinux | Caldera | 2.4 (including) | 2.4 (including) |
Openserver | Sco | 5.0.5 (including) | 5.0.5 (including) |
Openserver | Sco | 5.0.6 (including) | 5.0.6 (including) |
Openserver | Sco | 5.0.6a (including) | 5.0.6a (including) |
Solaris | Sun | 9.0 (including) | 9.0 (including) |
Sunos | Sun | 5.7 (including) | 5.7 (including) |
Sunos | Sun | 5.8 (including) | 5.8 (including) |