GNU GZip Unspecified Insecure Temporary File Creation Vulnerability
BID:11288
Info
GNU GZip Unspecified Insecure Temporary File Creation Vulnerability
| Bugtraq ID: | 11288 |
| Class: | Design Error |
| CVE: |
CVE-2004-0970 |
| Remote: | No |
| Local: | Yes |
| Published: | Sep 30 2004 12:00AM |
| Updated: | Jul 12 2009 07:06AM |
| Credit: | The individual or individuals responsible for the discovery of this issue is currently unknown; Trustix security engineers are credited with these discoveries. |
| Vulnerable: |
GNU gzip 1.3.3 t GNU gzip 1.3.3 GNU gzip 1.2.4 a |
| Not Vulnerable: | |
Discussion
GNU GZip Unspecified Insecure Temporary File Creation Vulnerability
GNU gzip is affected by an unspecified insecure temporary file creation vulnerability. This issue is likely due to a design error that causes the application to fail to verify the existence of a file before writing to it.
An attacker may leverage this issue to overwrite arbitrary files with the privileges of an unsuspecting user that activates the vulnerable application. Reportedly this issue is unlikely to facilitate privilege escalation.
GNU gzip is affected by an unspecified insecure temporary file creation vulnerability. This issue is likely due to a design error that causes the application to fail to verify the existence of a file before writing to it.
An attacker may leverage this issue to overwrite arbitrary files with the privileges of an unsuspecting user that activates the vulnerable application. Reportedly this issue is unlikely to facilitate privilege escalation.
Exploit / POC
GNU GZip Unspecified Insecure Temporary File Creation Vulnerability
No exploit is required to leverage this issue.
No exploit is required to leverage this issue.
Solution / Fix
GNU GZip Unspecified Insecure Temporary File Creation Vulnerability
Solution:
Trustix Linux has released an advisory (TSL-2004-0050) along with fixes dealing with this issue. Please see the referenced advisory for more information.
Debian Linux has released an advisory (DSA 588-1) along with fixes dealing with this issue. Please see the referenced advisory for more information.
MandrakeSoft has issued an advisory (MDKSA-2004:142) along with patched upgrades. Please see the referenced advisory for more information.
TurboLinux has issued an advisory and fixes for TurboLinux systems. See advisory TLSA-2005-9 in the reference section.
GNU gzip 1.2.4 a
GNU gzip 1.3.3
Solution:
Trustix Linux has released an advisory (TSL-2004-0050) along with fixes dealing with this issue. Please see the referenced advisory for more information.
Debian Linux has released an advisory (DSA 588-1) along with fixes dealing with this issue. Please see the referenced advisory for more information.
MandrakeSoft has issued an advisory (MDKSA-2004:142) along with patched upgrades. Please see the referenced advisory for more information.
TurboLinux has issued an advisory and fixes for TurboLinux systems. See advisory TLSA-2005-9 in the reference section.
GNU gzip 1.2.4 a
-
Mandrake gzip-1.2.4a-11.3.C21mdk.i586.rpm
Mandrake Corporate Server 2.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake gzip-1.2.4a-11.3.C21mdk.x86_64.rpm
Mandrake Corporate Server 2.1/x86_64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake gzip-1.2.4a-11.3.M82mdk.i586.rpm
Mandrake Multi Network Firewall 8.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake gzip-1.2.4a-13.1.100mdk.amd64.rpm
Mandrake Linux 10.0/AMD64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake gzip-1.2.4a-13.1.100mdk.i586.rpm
Mandrake Linux 10.0
http://www.mandrakesecure.net/en/ftp.php -
Mandrake gzip-1.2.4a-13.1.101mdk.i586.rpm
Mandrake Linux 10.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake gzip-1.2.4a-13.1.101mdk.x86_64.rpm
Mandrake Linux 10.1/x86_64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake gzip-1.2.4a-13.1.92mdk.amd64.rpm
Mandrake Linux 9.2/AMD64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake gzip-1.2.4a-13.1.92mdk.i586.rpm
Mandrake Linux 9.2
http://www.mandrakesecure.net/en/ftp.php -
Trustix gzip-1.2.4a-20tr.i586.rpm
Trustix Secure Linux 1.5
ftp://ftp.trustix.org/pub/trustix/updates/ -
Trustix gzip-1.2.4a-25tr.i586.rpm
Trustix Secure Linux 2.0
ftp://ftp.trustix.org/pub/trustix/updates/ -
Trustix gzip-1.2.4a-29tr.i586.rpm
Trustix Secure Linux 2.1 & Enterprise Server 2
ftp://ftp.trustix.org/pub/trustix/updates/ -
Trustix gzip-doc-1.2.4a-20tr.i586.rpm
Trustix Secure Linux 1.5
ftp://ftp.trustix.org/pub/trustix/updates/ -
Trustix gzip-doc-1.2.4a-25tr.i586.rpm
Trustix Secure Linux 2.0
ftp://ftp.trustix.org/pub/trustix/updates/ -
Trustix gzip-doc-1.2.4a-29tr.i586.rpm
Trustix Secure Linux 2.1 & Enterprise Server 2
ftp://ftp.trustix.org/pub/trustix/updates/
GNU gzip 1.3.3
-
TurboLinux gzip-1.3.3-5.i586.rpm
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/gzip-1.3.3-5.i586.rpm -
TurboLinux gzip-1.3.3-5.i586.rpm
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/10/up dates/RPMS/gzip-1.3.3-5.i586.rpm -
TurboLinux gzip-1.3.3-5.i586.rpm
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/7/upd ates/RPMS/gzip-1.3.3-5.i586.rpm -
TurboLinux gzip-1.3.3-5.i586.rpm
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/8/upd ates/RPMS/gzip-1.3.3-5.i586.rpm -
TurboLinux gzip-1.3.3-5.i586.rpm
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Workstation/ 7/updates/RPMS/gzip-1.3.3-5.i586.rpm -
TurboLinux gzip-1.3.3-5.i586.rpm
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Workstation/ 8/updates/RPMS/gzip-1.3.3-5.i586.rpm
References
GNU GZip Unspecified Insecure Temporary File Creation Vulnerability
References:
References:
- gzip home page (GNU)