Gentoo Webapp-Config Insecure File Creation Vulnerability

BID:13780

Info

Gentoo Webapp-Config Insecure File Creation Vulnerability

Bugtraq ID: 13780
Class: Design Error
CVE:
Remote: No
Local: Yes
Published: May 26 2005 12:00AM
Updated: May 26 2005 12:00AM
Credit: Eric Romang ([email protected] - ZATAZ Audit) is credited with the discovery of this vulnerability.
Vulnerable: Gentoo webapp-config 1.10 r13
Gentoo webapp-config 1.10 r12
Gentoo webapp-config 1.10 r10
Not Vulnerable: Gentoo webapp-config 1.11
Gentoo webapp-config 1.10 r14

Discussion

Gentoo Webapp-Config Insecure File Creation Vulnerability

Gentoo webapp-config is prone to an insecure file creation vulnerability. This issue is due to a design error that causes the application to fail to verify the existence of a file before writing to it.

An attacker may leverage this issue to cause arbitrary shell commands to be executed with superuser privileges.

Exploit / POC

Gentoo Webapp-Config Insecure File Creation Vulnerability

The following proof of concept exploit is available:

Solution / Fix

Gentoo Webapp-Config Insecure File Creation Vulnerability

Solution:
Gentoo has released advisory GLSA 200506-13 to address this issue. Users of affected packages are urged to execute the following commands with superuser privileges:

emerge --sync
emerge --ask --oneshot --verbose ">=net-www/webapp-config-1.11"

Please see the referenced advisory for further information.

References

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report