NetaTalk Unspecified Insecure Temporary File Creation Vulnerability
BID:11292
Info
NetaTalk Unspecified Insecure Temporary File Creation Vulnerability
| Bugtraq ID: | 11292 |
| Class: | Design Error |
| CVE: |
CVE-2004-0974 |
| Remote: | No |
| Local: | Yes |
| Published: | Sep 30 2004 12:00AM |
| Updated: | Jul 12 2009 07:06AM |
| Credit: | The individual or individuals responsible for the discovery of this issue is currently unknown; Trustix security engineers are credited with these discoveries. |
| Vulnerable: |
Turbolinux Turbolinux Workstation 8.0 Turbolinux Turbolinux Workstation 7.0 Turbolinux Turbolinux Server 8.0 Turbolinux Turbolinux Server 7.0 Redhat Fedora Core3 Redhat Fedora Core2 Netatalk Open Source Apple File Share Protocol Suite 1.6.4 Netatalk Open Source Apple File Share Protocol Suite 1.6.1 Netatalk Open Source Apple File Share Protocol Suite 1.5 pre6 Mandriva Linux Mandrake 10.1 x86_64 Mandriva Linux Mandrake 10.1 Mandriva Linux Mandrake 10.0 AMD64 Mandriva Linux Mandrake 10.0 Mandriva Linux Mandrake 9.2 amd64 Mandriva Linux Mandrake 9.2 MandrakeSoft Corporate Server 2.1 x86_64 MandrakeSoft Corporate Server 2.1 |
| Not Vulnerable: | |
Discussion
NetaTalk Unspecified Insecure Temporary File Creation Vulnerability
Netatalk is affected by an insecure temporary file creation vulnerability. This issue is due to a design error that causes the application to fail to verify the existance of a file before writing to it.
An attacker may leverage this issue to overwrite arbitrary files with the privileges of an unsuspecting user that activates the vulnerable application. Reportedly this issue is unlikely to facilitate privilege escalation.
Versions of Netatalk prior to version 1.6.4a are reported to be affected by this issue.
Netatalk is affected by an insecure temporary file creation vulnerability. This issue is due to a design error that causes the application to fail to verify the existance of a file before writing to it.
An attacker may leverage this issue to overwrite arbitrary files with the privileges of an unsuspecting user that activates the vulnerable application. Reportedly this issue is unlikely to facilitate privilege escalation.
Versions of Netatalk prior to version 1.6.4a are reported to be affected by this issue.
Exploit / POC
NetaTalk Unspecified Insecure Temporary File Creation Vulnerability
No exploit is required to leverage this issue.
No exploit is required to leverage this issue.
Solution / Fix
NetaTalk Unspecified Insecure Temporary File Creation Vulnerability
Solution:
Trustix Linux has released an advisory (TSL-2004-0050) along with fixes dealing with this issue. Please see the referenced advisory for more information.
Gentoo has made an advisory (GLSA 200410-25) available dealing with this issue. Gentoo has advised that all Netatalk users should upgrade to the latest version:
emerge sync
emerge -pv ">=net-fs/netatalk-1.6.4-r1"
emerge ">=net-fs/netatalk-1.6.4-r1"
For more information, please see the referenced Gentoo Linux advisory.
Mandrake Linux has released advisory MDKSA-2004:121 along with fixes dealing with this and other issues. Please see the referenced advisory for more information.
RedHat Linux has released advisories FEDORA-2004-505, and FEDORA-2004-506 to address this issue in Fedora Core 2, and 3 respectively. Please see the referenced advisories for further information.
Turbolinux has released advisory Turbolinux Security Announcement 31/Jan/2005 to address various issues. Please see the referenced advisory for more information.
The vendor has released version 1.6.4a of the affected package to resolve this issue:
Netatalk Open Source Apple File Share Protocol Suite 1.5 pre6
Netatalk Open Source Apple File Share Protocol Suite 1.6.1
Netatalk Open Source Apple File Share Protocol Suite 1.6.4
Turbolinux Turbolinux Workstation 7.0
Turbolinux Turbolinux Server 7.0
Turbolinux Turbolinux Server 8.0
Turbolinux Turbolinux Workstation 8.0
Solution:
Trustix Linux has released an advisory (TSL-2004-0050) along with fixes dealing with this issue. Please see the referenced advisory for more information.
Gentoo has made an advisory (GLSA 200410-25) available dealing with this issue. Gentoo has advised that all Netatalk users should upgrade to the latest version:
emerge sync
emerge -pv ">=net-fs/netatalk-1.6.4-r1"
emerge ">=net-fs/netatalk-1.6.4-r1"
For more information, please see the referenced Gentoo Linux advisory.
Mandrake Linux has released advisory MDKSA-2004:121 along with fixes dealing with this and other issues. Please see the referenced advisory for more information.
RedHat Linux has released advisories FEDORA-2004-505, and FEDORA-2004-506 to address this issue in Fedora Core 2, and 3 respectively. Please see the referenced advisories for further information.
Turbolinux has released advisory Turbolinux Security Announcement 31/Jan/2005 to address various issues. Please see the referenced advisory for more information.
The vendor has released version 1.6.4a of the affected package to resolve this issue:
Netatalk Open Source Apple File Share Protocol Suite 1.5 pre6
-
Netatalk netatalk-1.6.4a.tar.gz
http://prdownloads.sourceforge.net/netatalk/netatalk-1.6.4a.tar.gz?dow nload -
Trustix netatalk-1.5pre6-3tr.i586.rpm
Trustix Secure Linux 1.5
ftp://ftp.trustix.org/pub/trustix/updates/ -
Trustix netatalk-devel-1.5pre6-3tr.i586.rpm
Trustix Secure Linux 1.5
ftp://ftp.trustix.org/pub/trustix/updates/
Netatalk Open Source Apple File Share Protocol Suite 1.6.1
-
Netatalk netatalk-1.6.4a.tar.gz
http://prdownloads.sourceforge.net/netatalk/netatalk-1.6.4a.tar.gz?dow nload -
Trustix netatalk-1.6.1-4tr.i586.rpm
Trustix Secure Linux 2.0
ftp://ftp.trustix.org/pub/trustix/updates/ -
Trustix netatalk-devel-1.6.1-4tr.i586.rpm
Trustix Secure Linux 2.0
ftp://ftp.trustix.org/pub/trustix/updates/
Netatalk Open Source Apple File Share Protocol Suite 1.6.4
-
Fedora netatalk-1.6.4-2.2.i386.rpm
RedHat Fedora Core 2
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/2/ -
Fedora netatalk-1.6.4-2.2.x86_64.rpm
RedHat Fedora Core 2
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/2/ -
Fedora netatalk-1.6.4-4.i386.rpm
RedHat Fedora Core 3
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/ -
Fedora netatalk-1.6.4-4.x86_64.rpm
RedHat Fedora Core 3
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/ -
Fedora netatalk-debuginfo-1.6.4-2.2.i386.rpm
RedHat Fedora Core 2
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/2/ -
Fedora netatalk-debuginfo-1.6.4-2.2.x86_64.rpm
RedHat Fedora Core 2
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/2/ -
Fedora netatalk-debuginfo-1.6.4-4.i386.rpm
RedHat Fedora Core 3
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/ -
Fedora netatalk-debuginfo-1.6.4-4.x86_64.rpm
RedHat Fedora Core 3
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/ -
Fedora netatalk-devel-1.6.4-2.2.i386.rpm
RedHat Fedora Core 2
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/2/ -
Fedora netatalk-devel-1.6.4-2.2.x86_64.rpm
RedHat Fedora Core 2
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/2/ -
Fedora netatalk-devel-1.6.4-4.i386.rpm
RedHat Fedora Core 3
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/ -
Fedora netatalk-devel-1.6.4-4.x86_64.rpm
RedHat Fedora Core 3
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/ -
Mandrake netatalk-1.6.4-1.1.100mdk.amd64.rpm
Mandrake Linux 10.0/AMD64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake netatalk-1.6.4-1.1.100mdk.i586.rpm
Mandrake Linux 10.0
http://www.mandrakesecure.net/en/ftp.php -
Mandrake netatalk-devel-1.6.4-1.1.100mdk.amd64.rpm
Mandrake Linux 10.0/AMD64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake netatalk-devel-1.6.4-1.1.100mdk.i586.rpm
Mandrake Linux 10.0
http://www.mandrakesecure.net/en/ftp.php -
Netatalk netatalk-1.6.4a.tar.gz
http://prdownloads.sourceforge.net/netatalk/netatalk-1.6.4a.tar.gz?dow nload -
Trustix netatalk-1.6.4-4tr.i586.rpm
Trustix Secure Linux 2.1 & Enterprise Server 2
ftp://ftp.trustix.org/pub/trustix/updates/ -
Trustix netatalk-devel-1.6.4-4tr.i586.rpm
Trustix Secure Linux 2.1 & Enterprise Server 2
ftp://ftp.trustix.org/pub/trustix/updates/
Turbolinux Turbolinux Workstation 7.0
-
TurboLinux netatalk-1.5pre8-2.i586.rpm
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Workstation/ 7/updates/RPMS/netatalk-1.5pre8-2.i586.rpm -
TurboLinux netatalk-devel-1.5pre8-2.i586.rpm
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Workstation/ 7/updates/RPMS/netatalk-devel-1.5pre8-2.i586.rpm
Turbolinux Turbolinux Server 7.0
-
TurboLinux netatalk-1.5pre8-2.i586.rpm
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/7/upd ates/RPMS/netatalk-1.5pre8-2.i586.rpm -
TurboLinux netatalk-devel-1.5pre8-2.i586.rp
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/7/upd ates/RPMS/netatalk-devel-1.5pre8-2.i586.rp
Turbolinux Turbolinux Server 8.0
-
TurboLinux netatalk-1.5.3.1-8.i586.rpm
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/8/upd ates/RPMS/netatalk-1.5.3.1-8.i586.rpm -
TurboLinux netatalk-devel-1.5.3.1-8.i586.rpm
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/8/upd ates/RPMS/netatalk-devel-1.5.3.1-8.i586.rpm
Turbolinux Turbolinux Workstation 8.0
-
TurboLinux netatalk-1.5.2-2.i586.rpm
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Workstation/ 8/updates/RPMS/netatalk-1.5.2-2.i586.rpm -
TurboLinux netatalk-devel-1.5.2-2.i586.rpm
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Workstation/ 8/updates/RPMS/netatalk-devel-1.5.2-2.i586.rpm
References
NetaTalk Unspecified Insecure Temporary File Creation Vulnerability
References:
References:
- Netatalk Project Home Page (Netatalk)