CVE Vulnerabilities

CVE-2004-1942

Published: Apr 19, 2004 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The Solaris 9 patches 113579-02 through 113579-05, and 114342-02 through 114342-05, prevent ypserv and ypxfrd from properly restricting access to secure NIS maps, which allows local users to use ypcat or ypmatch to extract the contents of a secure map such as passwd.adjunct.byname.

Affected Software

Name Vendor Start Version End Version
Patch_manager Sun 113579-03 113579-03
Patch_manager Sun 113579-02 113579-02
Patch_manager Sun 114342-04 114342-04
Patch_manager Sun 113579-05 113579-05
Patch_manager Sun 114342-03 114342-03
Patch_manager Sun 114342-02 114342-02
Patch_manager Sun 113579-04 113579-04
Patch_manager Sun 114342-05 114342-05

References