Util-Linux Script Command Arbitrary File Overwrite Vulnerability
BID:16280
Info
Util-Linux Script Command Arbitrary File Overwrite Vulnerability
| Bugtraq ID: | 16280 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Dec 12 2001 12:00AM |
| Updated: | Jan 17 2006 09:10PM |
| Credit: | Discovered by Marco van Berkum. |
| Vulnerable: |
util-linux util-linux 2.11 util-linux util-linux 2.10 util-linux util-linux 2.9 util-linux util-linux 2.8 Redhat Enterprise Linux WS 4 Redhat Enterprise Linux WS 3 Redhat Enterprise Linux WS 2.1 IA64 Redhat Enterprise Linux WS 2.1 Redhat Enterprise Linux ES 4 Redhat Enterprise Linux ES 3 Redhat Enterprise Linux ES 2.1 IA64 Redhat Enterprise Linux ES 2.1 Redhat Enterprise Linux AS 4 Redhat Enterprise Linux AS 3 Redhat Enterprise Linux AS 2.1 IA64 Redhat Enterprise Linux AS 2.1 Redhat Desktop 4.0 Redhat Desktop 3.0 Redhat Advanced Workstation for the Itanium Processor 2.1 IA64 Redhat Advanced Workstation for the Itanium Processor 2.1 Avaya Messaging Storage Server Avaya Message Networking Avaya Intuity LX Avaya CVLAN |
| Not Vulnerable: |
util-linux util-linux 2.11 n |
Discussion
Util-Linux Script Command Arbitrary File Overwrite Vulnerability
Util-Linux is prone to a vulnerability that can allow local attackers to overwrite arbitrary files.
The vulnerability presents itself in the script command.
Successful exploitation may lead to data corruption or privilege escalation depending on the file that is overwritten.
This issue affects Util-linux versions prior to 2.11n.
Util-Linux is prone to a vulnerability that can allow local attackers to overwrite arbitrary files.
The vulnerability presents itself in the script command.
Successful exploitation may lead to data corruption or privilege escalation depending on the file that is overwritten.
This issue affects Util-linux versions prior to 2.11n.
Exploit / POC
Util-Linux Script Command Arbitrary File Overwrite Vulnerability
An exploit is not required.
An exploit is not required.
Solution / Fix
Util-Linux Script Command Arbitrary File Overwrite Vulnerability
Solution:
Util-linux 2.11n and subsequent versions are not vulnerable to this issue.
RedHat has released advisory RHSA-2005:782-12 to address this issue. Please see the referenced advisory for more information.
Avaya has released advisory ASA-2006-014 to identify vulnerable Avaya products. Avaya advises customers to ENTER actions for products which use vulnerable versions of util-linux and mount. Please see the referenced advisory for more information.
Solution:
Util-linux 2.11n and subsequent versions are not vulnerable to this issue.
RedHat has released advisory RHSA-2005:782-12 to address this issue. Please see the referenced advisory for more information.
Avaya has released advisory ASA-2006-014 to identify vulnerable Avaya products. Avaya advises customers to ENTER actions for products which use vulnerable versions of util-linux and mount. Please see the referenced advisory for more information.
References
Util-Linux Script Command Arbitrary File Overwrite Vulnerability
References:
References: