SGI arrayd.auth Default Configuration Vulnerability

Solution:
SGI had initially suggested that setting arrayd authentication to SIMPLE or NONE would be a valid workaround to this issue. SGI has now confirmed that SIMPLE or NONE authentication modes are also vulnerable. NOREMOTE arrayd authentication is not vulnerable.

SGI has released advisory 20050801-01-P to address this issue. Please see the referenced advisory for information on obtaining fixes.



 

Privacy Statement
Copyright 2010, SecurityFocus