The Basic Security Module (BSM) for Solaris 2.5.1, 2.6, 7, and 8 does not log anonymous FTP access, which allows remote attackers to hide their activities, possibly when certain BSM audit files are not present under the FTP root.
Software | From | Fixed in |
---|---|---|
sun / sunos | 5.5.1 | 5.5.1.x |
sun / sunos | 5.7 | 5.7.x |
sun / sunos | 5.8 | 5.8.x |
sun / solaris | 2.5.1 | 2.5.1.x |
sun / solaris | 2.6 | 2.6.x |
sun / solaris | 7.0 | 7.0.x |
sun / solaris | 8.0 | 8.0.x |