Qpopper Local Arbitrary File Modification Vulnerability
BID:14944
Info
Qpopper Local Arbitrary File Modification Vulnerability
| Bugtraq ID: | 14944 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Sep 26 2005 12:00AM |
| Updated: | Sep 26 2005 12:00AM |
| Credit: | This issue was disclosed by kcope <[email protected]>. |
| Vulnerable: |
Qualcomm qpopper 4.0.8 |
| Not Vulnerable: | |
Discussion
Qpopper Local Arbitrary File Modification Vulnerability
Qpopper is a POP3 mail server available for Linux and Unix based systems.
Qpopper is susceptible to a local arbitrary file modification vulnerability. This issue is due to insecure file handling in the 'poppassd' setuid-superuser application.
A local attacker could exploit this vulnerability to alter the permissions on, overwrite and alter arbitrary files with superuser privileges. Depending on the purpose of the modified files, this may cause system crashes, or allow attackers to gain elevated privileges.
Qpopper is a POP3 mail server available for Linux and Unix based systems.
Qpopper is susceptible to a local arbitrary file modification vulnerability. This issue is due to insecure file handling in the 'poppassd' setuid-superuser application.
A local attacker could exploit this vulnerability to alter the permissions on, overwrite and alter arbitrary files with superuser privileges. Depending on the purpose of the modified files, this may cause system crashes, or allow attackers to gain elevated privileges.
Exploit / POC
Qpopper Local Arbitrary File Modification Vulnerability
An exploit is not required. Proof of concept exploits have been provided by kcope <[email protected]>:
An exploit is not required. Proof of concept exploits have been provided by kcope <[email protected]>:
Solution / Fix
Qpopper Local Arbitrary File Modification Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Qpopper Local Arbitrary File Modification Vulnerability
References:
References:
- Qpopper Changelog (Qualcomm)
- Qpopper Homepage (Qualcomm)