Red Hat 'capp-lspp-config' Local Privilege Escalation Vulnerability
BID:28557
Info
Red Hat 'capp-lspp-config' Local Privilege Escalation Vulnerability
| Bugtraq ID: | 28557 |
| Class: | Design Error |
| CVE: |
CVE-2008-0884 |
| Remote: | No |
| Local: | Yes |
| Published: | Apr 01 2008 12:00AM |
| Updated: | Apr 02 2008 04:29PM |
| Credit: | This issue was disclosed by the vendor. |
| Vulnerable: |
Redhat lspp-eal4-config-ibm 0.65.1 Redhat capp-lspp-eal4-config-hp 0.65.1 |
| Not Vulnerable: |
Redhat lspp-eal4-config-ibm 0.65.2 Redhat capp-lspp-eal4-config-hp 0.65.2 |
Discussion
Red Hat 'capp-lspp-config' Local Privilege Escalation Vulnerability
The 'capp-lspp-config' script is prone to a local privilege-escalation vulnerability because it creates insecure permissions on the '/etc/pam.d/system-auth-ac' file.
Local attackers can exploit this issue to escalate their privileges. This may lead to the complete compromise of affected computers.
This issue affects the 'lspp-eal4-config-ibm' and 'capp-lspp-eal4-config-hp' packages.
The 'capp-lspp-config' script is prone to a local privilege-escalation vulnerability because it creates insecure permissions on the '/etc/pam.d/system-auth-ac' file.
Local attackers can exploit this issue to escalate their privileges. This may lead to the complete compromise of affected computers.
This issue affects the 'lspp-eal4-config-ibm' and 'capp-lspp-eal4-config-hp' packages.
Exploit / POC
Red Hat 'capp-lspp-config' Local Privilege Escalation Vulnerability
Attackers can use readily available tools to exploit this issue.
Attackers can use readily available tools to exploit this issue.
Solution / Fix
Red Hat 'capp-lspp-config' Local Privilege Escalation Vulnerability
Solution:
The vendor has released updates. Please see the references for more information.
Solution:
The vendor has released updates. Please see the references for more information.
References
Red Hat 'capp-lspp-config' Local Privilege Escalation Vulnerability
References:
References: