Uudecode performs inadequate checks on user-specified output files



Vendor Statement

Sun does not believe that this is a security risk as uudecode is functioning as expected and documented. This is an issue if uudecode is blindly executed by a mail reader or other software application. For example if the following /etc/mail/aliases entry is uncommented:

# decode: "|/usr/bin/uudecode"

There aren't any tools in the standard Solaris distribution which require uudecode to be run with privileges.

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

