GIPTables Firewall Insecure File Creation Vulnerability
BID:13860
Info
GIPTables Firewall Insecure File Creation Vulnerability
| Bugtraq ID: | 13860 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Jun 06 2005 12:00AM |
| Updated: | Jun 06 2005 12:00AM |
| Credit: | Eric Romang <[email protected]> of ZATAZ Audit is credited with the discovery of this vulnerability. |
| Vulnerable: |
Adrian Pascalau GIPTables Firewall 1.1 Adrian Pascalau GIPTables Firewall 1.0 |
| Not Vulnerable: | |
Discussion
GIPTables Firewall Insecure File Creation Vulnerability
GIPTables Firewall is prone to an insecure file creation vulnerability. This issue is due to a design error that causes the application to fail to verify the existence of a file before writing to it.
An attacker may leverage this issue to overwrite arbitrary files with the privileges of an unsuspecting user that activates the vulnerable utility.
The temporary file contains a list of IP addresses to be blocked by the firewall software, so an attacker may also exploit this vulnerability to deny network service to arbitrary IP addresses.
GIPTables Firewall is prone to an insecure file creation vulnerability. This issue is due to a design error that causes the application to fail to verify the existence of a file before writing to it.
An attacker may leverage this issue to overwrite arbitrary files with the privileges of an unsuspecting user that activates the vulnerable utility.
The temporary file contains a list of IP addresses to be blocked by the firewall software, so an attacker may also exploit this vulnerability to deny network service to arbitrary IP addresses.
Exploit / POC
GIPTables Firewall Insecure File Creation Vulnerability
An exploit is not required.
An exploit is not required.
Solution / Fix
GIPTables Firewall Insecure File Creation Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
GIPTables Firewall Insecure File Creation Vulnerability
References:
References:
- GIPTables Firewall Home Page (Adrian Pascalau)
- GIPTables Firewall <= v1.1 insecure temporary file creation (ZATAZ Audits
)