Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

Short Name

RPC:SUN-SOLARIS-SADMIND-ADM

Severity

High

Recommended

No

Recommended Action

Drop

Category

RPC

Keywords

Sun Solstice AdminSuite sadmind service adm_build_path Buffer Overflow

Release Date

2012/02/28

Update Number

2089

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+

RPC: Sun Solstice AdminSuite sadmind service adm_build_path Buffer Overflow


This signature detects attempts to exploit a known vulnerability in the Solstice AdminSuite's sadmind. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the affected application.

Extended Description

Sun Solstice AdminSuite is prone to a remote stack-based buffer-overflow vulnerability because the software fails to perform adequate boundary checks on user-supplied input. Attackers can leverage this issue to execute arbitrary code in the context of the application. Successful exploits will compromise the application and the underlying computer. Failed attacks will cause denial-of-service conditions. We don't know which specific versions of Solstice AdminSuite are affected, but versions for Solaris 8 and 9 are reported vulnerable. We will update this BID as more information emerges.

Affected Products

  • Avaya CMS Server 13.0.0
  • Avaya CMS Server 13.1
  • Avaya CMS Server 14.0
  • Avaya CMS Server 14.1
  • Avaya Interactive Response 2.0
  • Nortel Networks CDMA W-NMS-CNM
  • Nortel Networks Self-Service - CCSS7
  • Nortel Networks Self-Service MPS 100
  • Nortel Networks Self-Service MPS 1000
  • Nortel Networks Self-Service MPS 500
  • Nortel Networks Self-Service Peri Application
  • Nortel Networks Self-Service Peri CTX
  • Nortel Networks Self-Service Peri Workstation
  • Nortel Networks Self-Service Speech Server
  • Sun Solaris 8 Sparc
  • Sun Solaris 8 X86
  • Sun Solaris 9 Sparc
  • Sun Solaris 9 X86
  • Sun Solstice AdminSuite 2.1.0
  • Sun Solstice AdminSuite 2.1.0 _x86
  • Sun Solstice AdminSuite 2.2.0
  • Sun Solstice AdminSuite 2.2.0 _x86

References

  • BugTraq: 31751
  • CVE: CVE-2008-4556

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out