DOSBox Unauthorized File System Access Vulnerability
BID:26802
Info
DOSBox Unauthorized File System Access Vulnerability
| Bugtraq ID: | 26802 |
| Class: | Access Validation Error |
| CVE: |
CVE-2007-6328 |
| Remote: | No |
| Local: | Yes |
| Published: | Dec 10 2007 12:00AM |
| Updated: | Jan 11 2008 04:29AM |
| Credit: | Luigi Auriemma is credited with the discovery of this issue. |
| Vulnerable: |
DOSBox DOSBox 0.72 DOSBox DOSBox 0.71 DOSBox DOSBox 0.70 |
| Not Vulnerable: | |
Discussion
DOSBox Unauthorized File System Access Vulnerability
DOSBox is prone to a vulnerability that may allow a client application to access files on the host operating system.
The application does not properly restrict access to specific commands that may allow a client application to access arbitrary files on the host computer.
This issue affects DOSBox 0.72 and earlier versions. At the time of this writing, the CVS repository is also reported vulnerable.
DOSBox is prone to a vulnerability that may allow a client application to access files on the host operating system.
The application does not properly restrict access to specific commands that may allow a client application to access arbitrary files on the host computer.
This issue affects DOSBox 0.72 and earlier versions. At the time of this writing, the CVS repository is also reported vulnerable.
Exploit / POC
DOSBox Unauthorized File System Access Vulnerability
An attacker uses the vulnerable application's 'mount' command to exploit this issue.
An attacker uses the vulnerable application's 'mount' command to exploit this issue.
Solution / Fix
DOSBox Unauthorized File System Access Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
NOTE: According to the reporter, the vendor does not feel that this issue is a security vulnerability. Symantec has not confirmed this.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
NOTE: According to the reporter, the vendor does not feel that this issue is a security vulnerability. Symantec has not confirmed this.
References
DOSBox Unauthorized File System Access Vulnerability
References:
References:
- DOSBox Homepage (DOSBox)
- Filesystem access in DOSBox 0.72 (Luigi Auriemma
)