PatchLink Update Multiple Insecure Temporary File Creation Vulnerabilities
BID:27458
Info
PatchLink Update Multiple Insecure Temporary File Creation Vulnerabilities
| Bugtraq ID: | 27458 |
| Class: | Design Error |
| CVE: |
CVE-2008-0525 |
| Remote: | No |
| Local: | Yes |
| Published: | Jan 25 2008 12:00AM |
| Updated: | Feb 07 2008 07:36PM |
| Credit: | Larry W. Cashdollar discovered these issues. |
| Vulnerable: |
Novell ZENworks Patch Management 6.4 Novell ZENworks Patch Management 6.3 Novell ZENworks Patch Management 6.2 Lumension Security PatchLink Update Agent for Linux/Unix/Mac 6.4 Lumension Security PatchLink Update Agent for Linux/Unix/Mac 6.3 Lumension Security PatchLink Update Agent for Linux/Unix/Mac 6.2 |
| Not Vulnerable: | |
Discussion
PatchLink Update Multiple Insecure Temporary File Creation Vulnerabilities
The PatchLink Update Agent for UNIX creates temporary files in an insecure manner.
An attacker with local access could potentially exploit these issues to perform symbolic-link attacks, overwriting arbitrary files in the context of the affected application.
Successfully mounting a symlink attack may allow the attacker to overwrite or corrupt sensitive files, which may result in a denial of service. Other attacks may also be possible.
These issues affect unknown versions of the application's UNIX client; we may update this BID when more information becomes available.
These issues affect PatchLink Update Agent for Linux/Unix/Mac 6.4, 6.3, and 6.2.
The PatchLink Update Agent for UNIX creates temporary files in an insecure manner.
An attacker with local access could potentially exploit these issues to perform symbolic-link attacks, overwriting arbitrary files in the context of the affected application.
Successfully mounting a symlink attack may allow the attacker to overwrite or corrupt sensitive files, which may result in a denial of service. Other attacks may also be possible.
These issues affect unknown versions of the application's UNIX client; we may update this BID when more information becomes available.
These issues affect PatchLink Update Agent for Linux/Unix/Mac 6.4, 6.3, and 6.2.
Exploit / POC
PatchLink Update Multiple Insecure Temporary File Creation Vulnerabilities
To exploit these issues, an attacker uses readily available commands.
To exploit these issues, an attacker uses readily available commands.
Solution / Fix
PatchLink Update Multiple Insecure Temporary File Creation Vulnerabilities
Solution:
The vendor released patches to address these issues. Please see the references for more information.
Solution:
The vendor released patches to address these issues. Please see the references for more information.
References
PatchLink Update Multiple Insecure Temporary File Creation Vulnerabilities
References:
References:
- PatchLink Update Homepage (Lumension Security)
- Two vulnerabilities for PatchLink Update Client for Unix. ([email protected])
- Lumension Security Advisory (40628) (Lumension Security)
- Lumension Security Advisory (40644) (Lumension Security)
- Security Update for PatchLink Update Agent for Linux/Unix/Mac 6.x (Lumension Security)
- Security Update for ZPM Update Agent for Linux/Unix/Mac 6.x (Novell)