Bacula Insecure Temporary File Creation Vulnerabilities
BID:14881
Info
Bacula Insecure Temporary File Creation Vulnerabilities
| Bugtraq ID: | 14881 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Sep 20 2005 12:00AM |
| Updated: | Sep 20 2005 12:00AM |
| Credit: | Eric Romang ([email protected]) is credited with the discovery of this vulnerability. |
| Vulnerable: |
S.u.S.E. Linux Professional 10.0 OSS S.u.S.E. Linux Professional 10.0 S.u.S.E. Linux Personal 10.0 OSS S.u.S.E. beagle 10.0 Bacula Bacula 1.36 .3 |
| Not Vulnerable: |
Bacula Bacula 1.37 .39 |
Discussion
Bacula Insecure Temporary File Creation Vulnerabilities
Bacula creates temporary files in an insecure manner.
An attacker with local access could potentially exploit this issue to view files and obtain privileged information. The attacker may also perform symlink attacks, overwriting arbitrary files in the context of the affected application.
Exploitation would most likely result in loss of confidentiality and theft of privileged information. Successful exploitation of a symlink attack may result in sensitive configuration files being overwritten. This may result in a denial of service; other attacks may also be possible.
Bacula creates temporary files in an insecure manner.
An attacker with local access could potentially exploit this issue to view files and obtain privileged information. The attacker may also perform symlink attacks, overwriting arbitrary files in the context of the affected application.
Exploitation would most likely result in loss of confidentiality and theft of privileged information. Successful exploitation of a symlink attack may result in sensitive configuration files being overwritten. This may result in a denial of service; other attacks may also be possible.
Exploit / POC
Bacula Insecure Temporary File Creation Vulnerabilities
No exploit is required.
No exploit is required.
Solution / Fix
Bacula Insecure Temporary File Creation Vulnerabilities
Solution:
These vulnerabilities have been addressed in Bacula version 1.37.39.
SUSE has released advisory SUSE-SR:2005:022 to address this and other issues. Please see the referenced advisory for more information.
Solution:
These vulnerabilities have been addressed in Bacula version 1.37.39.
SUSE has released advisory SUSE-SR:2005:022 to address this and other issues. Please see the referenced advisory for more information.
References
Bacula Insecure Temporary File Creation Vulnerabilities
References:
References:
- Bacula Homepage (Bacula)
- bacula insecure temporary file creation (Eric Romang)
- bacula insecure temporary file creation ([email protected])