librpc.dll remote code execution vulnerability
Posted in 2010
Topics: Versions, Editions & End-of-Life
Yesterday my sys admin sent me a link to Zero Day Initiative announcing a remote code execution vulnerability in the RPC protocol parsing library, librpc.dll. The link for this announcement is: http://www.zerodayinitiative.com/advisories/ZDI-10-022/ The response from IBM says this was fixed in IDS 10.00.TC10 and IDS 11.10.TC4. We are running IDS 11.5.FC1. Do I need to be concerned about this advisory?
LOIS SAMER wrote: > Yesterday my sys admin sent me a link to Zero Day Initiative announcing a > remote code execution vulnerability in the RPC protocol parsing library, > librpc.dll. The link for this announcement is: > > http://www.zerodayinitiative.com/advisories/ZDI-10-022/ > > The response from IBM says this was fixed in IDS 10.00.TC10 and IDS 11.10.TC4. > We are running IDS 11.5.FC1. Do I need to be concerned about this advisory? Yes. And you should upgrade to FC6 anyway. Who runs a production system on FC1????? -- Cheers, Obnoxio The Clown http://obotheclown.blogspot.com I will now proceed to pleasure myself with this fish. -- This message has been scanned for viruses and dangerous content by OpenProtect(http://www.openprotect.com), and is believed to be clean.
What version are you running? If you are running IDS on any platform other than windows, no it's not a problem at all. If you are running on Windows, then are you running an 11.10 fixpack earlier than .TC4 or are your running a 10.00 fixpack earlier than .TC9 or any 7.xx or 9.xx? If you are running 11.50.UC<anything>, 11.50.FC<anything>, 11.10.U*, 11.10.F*, 11.10.TC4 or higher, 10.00.U*, 10.00.F*, or 10.00.TC9 or higher, you are safe. Art Art S. Kagel Advanced DataTools (www.advancedatatools.com) IIUG Board of Directors (art@iiug.org) See you at the 2010 IIUG Informix Conference April 25-28, 2010 Overland Park (Kansas City), KS www.iiug.org/conf Disclaimer: Please keep in mind that my own opinions are my own opinions and do not reflect on my employer, Advanced DataTools, the IIUG, nor any other organization with which I am associated either explicitly, implicitly, or by inference. Neither do those opinions reflect those of other individuals affiliated with any entity with which I am affiliated nor those of the entities themselves. On Tue, Mar 2, 2010 at 12:04 PM, LOIS SAMER <samer@math.colostate.edu>wrote: > Yesterday my sys admin sent me a link to Zero Day Initiative announcing a > remote code execution vulnerability in the RPC protocol parsing library, > librpc.dll. The link for this announcement is: > > http://www.zerodayinitiative.com/advisories/ZDI-10-022/ > > The response from IBM says this was fixed in IDS 10.00.TC10 and IDS > 11.10.TC4. > We are running IDS 11.5.FC1. Do I need to be concerned about this advisory? > > > > ******************************************************************************* > Forum Note: Use "Reply" to post a response in the discussion forum. > > --001517440f682492380480d49294