Adobe Acrobat Reader 'acroread' Insecure Temporary File Creation Vulnerability
BID:28091
Info
Adobe Acrobat Reader 'acroread' Insecure Temporary File Creation Vulnerability
| Bugtraq ID: | 28091 |
| Class: | Race Condition Error |
| CVE: |
CVE-2008-0883 |
| Remote: | No |
| Local: | Yes |
| Published: | Mar 04 2008 12:00AM |
| Updated: | Mar 19 2015 09:34AM |
| Credit: | SUSE disclosed this issue. |
| Vulnerable: |
SuSE SUSE Linux Enterprise Server 10 SuSE SUSE Linux Enterprise Desktop 10 SP1 SuSE SUSE Linux Enterprise Desktop 10 SuSE openSUSE 10.3 Sun Solaris 10_sparc S.u.S.E. openSUSE 10.2 S.u.S.E. openSUSE 10.1 S.u.S.E. Linux Desktop 10 S.u.S.E. Linux 10.1 x86-64 S.u.S.E. Linux 10.1 x86 S.u.S.E. Linux 10.1 ppc S.u.S.E. Linux 10.0 x86-64 S.u.S.E. Linux 10.0 x86 S.u.S.E. Linux 10.0 ppc RedHat Enterprise Linux Extras 4 RedHat Enterprise Linux Extras 3 Red Hat Enterprise Linux Supplementary 5 server Red Hat Enterprise Linux Desktop Supplementary 5 client Gentoo Linux Adobe Reader 8.1.2 |
| Not Vulnerable: | |
Discussion
Adobe Acrobat Reader 'acroread' Insecure Temporary File Creation Vulnerability
The 'acroread' script of the Adobe Acrobat Reader package creates temporary files in an insecure manner.
An attacker with local access could potentially exploit this issue to perform symbolic-link attacks, overwriting arbitrary files in the context of the affected application.
Successfully mounting a symlink attack may allow the attacker to delete or corrupt sensitive files, which may result in a denial of service. Other attacks may also be possible.
This issue affects Adobe Reader 8.1.2 for Unix; other versions may also be vulnerable.
The 'acroread' script of the Adobe Acrobat Reader package creates temporary files in an insecure manner.
An attacker with local access could potentially exploit this issue to perform symbolic-link attacks, overwriting arbitrary files in the context of the affected application.
Successfully mounting a symlink attack may allow the attacker to delete or corrupt sensitive files, which may result in a denial of service. Other attacks may also be possible.
This issue affects Adobe Reader 8.1.2 for Unix; other versions may also be vulnerable.
Exploit / POC
Adobe Acrobat Reader 'acroread' Insecure Temporary File Creation Vulnerability
An attacker uses readily available commands to exploit this issue.
An attacker uses readily available commands to exploit this issue.
Solution / Fix
Adobe Acrobat Reader 'acroread' Insecure Temporary File Creation Vulnerability
Solution:
The vendor has released an advisory and updates to address this issue. Please see the references for more information.
Solution:
The vendor has released an advisory and updates to address this issue. Please see the references for more information.
References
Adobe Acrobat Reader 'acroread' Insecure Temporary File Creation Vulnerability
References:
References:
- Adobe Reader 8 Homepage (Adobe)
- APSA08-02 Privilege escalation issue in Adobe Reader 8.1.2 for Unix (Adobe)
- APSB08-15 Security Update available for Adobe Reader and Acrobat 8.1.2 (Adobe)
- RHSA-2008:0641-5 Critical: acroread security update (Red Hat)
- Security update for acroread (SUSE)
- Sun Alert 240106 Multiple Security Vulnerabilities in the Adobe Reader may lead (Sun Microsystems)