Mailing List

Name:

Email:

[SingCERT] OpenSolaris Flaw in kclient and smbadm When Joining a Windows Domain Has Unspecified Impact

Attention: open in a new window. PDFPrintE-mail

[ Summary ]

A vulnerability was reported in OpenSolaris. The impact was not specified.

A configuration vulnerability exists in the way that the Kerberos client utility (kclient(1M)) and the CIFS configuration utility (smbadm(1M)) join a Windows Domain.

[ Affected System ]

SPARC Platform
OpenSolaris based upon builds snv_77 through snv_131 for smbadm(1M)
OpenSolaris based upon builds snv_91 through snv_131 for kclient(1M)


x86 Platform
OpenSolaris based upon builds snv_77 through snv_131 for smbadm(1M)
OpenSolaris based upon builds snv_91 through snv_131 for kclient(1M)
Note: Solaris 8, 9, and 10 are not impacted by this issue.

[ Solution/Workaround ]

SPARC Platform
OpenSolaris based upon builds snv_132 or later for smbadm(1M) and kclient(1M)
x86 Platform
OpenSolaris based upon builds snv_132 or later for smbadm(1M) and kclient(1M)

[ Reference ]

The orginal advisory is available at:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-275790-1