Linux Audit Daemon 'audit_log_user_command()' Local Buffer Overflow Vulnerability
BID:28524
Info
Linux Audit Daemon 'audit_log_user_command()' Local Buffer Overflow Vulnerability
| Bugtraq ID: | 28524 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2008-1628 |
| Remote: | No |
| Local: | Yes |
| Published: | Mar 31 2008 12:00AM |
| Updated: | Apr 13 2015 09:51PM |
| Credit: | The vendor disclosed this issue. |
| Vulnerable: |
S.u.S.E. openSUSE 10.3 Mandriva Linux Mandrake 2008.1 x86_64 Mandriva Linux Mandrake 2008.1 Mandriva Linux Mandrake 2008.0 x86_64 Mandriva Linux Mandrake 2008.0 Linux Audit Linux Audit 1.6.9 Linux Audit Linux Audit 0 Gentoo Linux |
| Not Vulnerable: |
Linux Audit Linux Audit 1.7 |
Discussion
Linux Audit Daemon 'audit_log_user_command()' Local Buffer Overflow Vulnerability
The Linux Audit daemon is prone to a local buffer-overflow vulnerability because the software fails to properly bounds-check user-supplied input.
Successfully exploiting this issue allows local attackers to execute arbitrary machine code with elevated privileges. This may facilitate the compromise of affected computers.
Versions prior to Linux Audit 1.7 are vulnerable.
The Linux Audit daemon is prone to a local buffer-overflow vulnerability because the software fails to properly bounds-check user-supplied input.
Successfully exploiting this issue allows local attackers to execute arbitrary machine code with elevated privileges. This may facilitate the compromise of affected computers.
Versions prior to Linux Audit 1.7 are vulnerable.
Exploit / POC
Linux Audit Daemon 'audit_log_user_command()' Local Buffer Overflow Vulnerability
Currently we are not aware of any exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
References
Linux Audit Daemon 'audit_log_user_command()' Local Buffer Overflow Vulnerability
References:
References:
- audit 1.7 released (Steve Grubb)
- Linux Audit ChangeLog (Linux Audit)
- Linux Audit Home Page (Linux Audit)