Information
CDE buffer overflow vulnerabilities may be exploited by a local user to obtain root privilege via suid / sgid programs owned by root:bin or root:sys
CDE has been associated with major security risks, most of which are buffer overflow vulnerabilities. These vulnerabilities may be exploited by a local user to obtain root privilege via suid / sgid programs owned by root:bin or root:sys It is recommended that the CDE binaries have the suid / sgid removed.
Solution
Remove the suid / sgid from the following CDE binaries:
chmod ug-s /usr/dt/bin/dtaction
chmod ug-s /usr/dt/bin/dtappgather
chmod ug-s /usr/dt/bin/dtprintinfo
chmod ug-s /usr/dt/bin/dtsession