ClueCentral Apache Suexec Patch Security Weakness
BID:10478
Info
ClueCentral Apache Suexec Patch Security Weakness
| Bugtraq ID: | 10478 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Jun 07 2004 12:00AM |
| Updated: | Jun 07 2004 12:00AM |
| Credit: | Discovery of this weakness is credited to Rob Brown <[email protected]>. |
| Vulnerable: |
cluecentral suexec.patch |
| Not Vulnerable: | |
Discussion
ClueCentral Apache Suexec Patch Security Weakness
cluecentral Apache suexec patch is reported prone to a local security weakness. It is reported that the patch that is applied to Apache suexec makes suexec insecure. The patch reportedly removes security checks on insecure directory permissions and permits the execution of files owned by arbitrary users, by the 'nobody' user.
A local attacker who has permissions to create, publish and request PHP web content on the affected system may exploit this weakness in conjunction with other security vulnerabilities to achieve some degree of privilege escalation.
cluecentral Apache suexec patch is reported prone to a local security weakness. It is reported that the patch that is applied to Apache suexec makes suexec insecure. The patch reportedly removes security checks on insecure directory permissions and permits the execution of files owned by arbitrary users, by the 'nobody' user.
A local attacker who has permissions to create, publish and request PHP web content on the affected system may exploit this weakness in conjunction with other security vulnerabilities to achieve some degree of privilege escalation.
Exploit / POC
ClueCentral Apache Suexec Patch Security Weakness
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
ClueCentral Apache Suexec Patch Security Weakness
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
ClueCentral Apache Suexec Patch Security Weakness
References:
References:
- Suexec patch (cluecentral)
- cPanel mod_php suEXEC Taint Vulnerability (Rob Brown
)