Citar
SYBSEC-12.MAR.2008: Symantec Altiris Client Service Privilege Escalation Vulnerability
Title Symantec Altiris Client Service Privilege Escalation Vulnerability
ID SYBSEC-12.MAR.2008
Severity HIGH
History 20.AUG.2007 Vulnerability discovered
13.MAR.2008 Vendor contacted
Scope Privilege Escalation
Platforms Altiris Client Service
Author Alex Hernandez <ahernandez [at] sybsecurity [dot] com>
URL http://www.sybsecurity.com/advisors/SYBSEC-ADV15-Symantec_Altiris_Client_Privilege_Escalation_Vulnerability
Release Public
Overview Altiris Inc. is a subsidiary of Symantec specializing in service-oriented management software which allows organizations to manage IT assets. They also provide software for web services, security, and systems management products. Altiris has solutions to meet regulatory and legal requirements. This includes auditing, security, change management and patch management of software.
Affected versions The vulnerability has been reported in versions Altiris Client Service
Altiris Client 6.5.248
Altiris Client 6.5.299
Altiris Client 6.8.378
Description A vulnerability has been identified in Symantec Altiris Service, which could be exploited by local attackers to obtain elevated privileges.
Workaround Upgrade the software version you can download from:
http://kb.altiris.com
Acknowledgments This vulnerability have been found and researched by:
- Alex Hernandez <ahernandez [at] sybsecurity [dot] com>
- Eduardo Vela <sirdarckcat [at] gmail [dot] com>
References * Altiris: http://www.altiris.com
* SYB Security: http://www.sybsecurity.com
Details This issue is caused by an unspecified error in the Altiris Client Service, which could allow malicious users to execute arbitrary code with elevated privileges via a WM_COMMANDHELP attack.
Title Symantec Altiris Client Service Privilege Escalation Vulnerability
ID SYBSEC-12.MAR.2008
Severity HIGH
History 20.AUG.2007 Vulnerability discovered
13.MAR.2008 Vendor contacted
Scope Privilege Escalation
Platforms Altiris Client Service
Author Alex Hernandez <ahernandez [at] sybsecurity [dot] com>
URL http://www.sybsecurity.com/advisors/SYBSEC-ADV15-Symantec_Altiris_Client_Privilege_Escalation_Vulnerability
Release Public
Overview Altiris Inc. is a subsidiary of Symantec specializing in service-oriented management software which allows organizations to manage IT assets. They also provide software for web services, security, and systems management products. Altiris has solutions to meet regulatory and legal requirements. This includes auditing, security, change management and patch management of software.
Affected versions The vulnerability has been reported in versions Altiris Client Service
Altiris Client 6.5.248
Altiris Client 6.5.299
Altiris Client 6.8.378
Description A vulnerability has been identified in Symantec Altiris Service, which could be exploited by local attackers to obtain elevated privileges.
http://kb.altiris.com
Acknowledgments This vulnerability have been found and researched by:
- Alex Hernandez <ahernandez [at] sybsecurity [dot] com>
- Eduardo Vela <sirdarckcat [at] gmail [dot] com>
References * Altiris: http://www.altiris.com
* SYB Security: http://www.sybsecurity.com
Details This issue is caused by an unspecified error in the Altiris Client Service, which could allow malicious users to execute arbitrary code with elevated privileges via a WM_COMMANDHELP attack.
PDF Details PoC :
http://www.sybsecurity.com/resources/static/Symantec_Altiris_Deployment_Solution_Elevation_of_Privileges_Vulnerabilities.pdf
Exploit (with goto {l33t h4x0r pr0gr4m1ng sk1lls
}):http://www.sybsecurity.com/pages/advisors/static/altiris_exp.txt
by al3x & sirdarckcat.
PS.
private, do not distribute until vendor fix is released.










Autor




En línea












[/url]