Oval Definition:
oval:org.mitre.oval:def:4834
Revision Date
:
2005-10-12
Version
:
17
Title
:
LDAP RBAC Privilege Escalation Vulnerability
Description
:
Unknown vulnerability in LDAP on Sun Solaris 8 and 9, when using Role Based Access Control (RBAC), allows local users to execute certain commands with additional privileges.
Family
:
unix
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2004-1353
Platform(s)
:
Sun Solaris 8
Sun Solaris 9
Product(s)
:
LDAP
Definition Synopsis
Software section
Solaris 8 or 9 installed
Solaris 8 Installed
OR
Solaris 9 Installed
AND
NOT
Patch 108993-38 or later installed
AND
NOT
Patch 112960-17 or later installed
AND
Configuration section
/etc/nsswitch.conf configured to use LDAP with RBAC
BACK