MirBSD Korn Shell Local Privilege Escalation Vulnerability
BID:28768
Info
MirBSD Korn Shell Local Privilege Escalation Vulnerability
| Bugtraq ID: | 28768 |
| Class: | Design Error |
| CVE: |
CVE-2008-1845 |
| Remote: | No |
| Local: | Yes |
| Published: | Apr 14 2008 12:00AM |
| Updated: | Apr 16 2015 06:01PM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
MirBSD mksh 0 |
| Not Vulnerable: |
MirBSD mksh R33d |
Discussion
MirBSD Korn Shell Local Privilege Escalation Vulnerability
MirBSD Korn Shell (mksh) is prone to a local privilege-escalation vulnerability because the application fails to properly ensure that the origin of terminal input is secure.
Successfully exploiting this issue allows local attackers to execute arbitrary shell commands with the privileges of other users running the affected shell.
Versions prior to mksh R33d are vulnerable.
MirBSD Korn Shell (mksh) is prone to a local privilege-escalation vulnerability because the application fails to properly ensure that the origin of terminal input is secure.
Successfully exploiting this issue allows local attackers to execute arbitrary shell commands with the privileges of other users running the affected shell.
Versions prior to mksh R33d are vulnerable.
Exploit / POC
MirBSD Korn Shell Local Privilege Escalation Vulnerability
An attacker exploits this issue by using standard utilities.
An attacker exploits this issue by using standard utilities.
Solution / Fix
MirBSD Korn Shell Local Privilege Escalation Vulnerability
Solution:
The vendor has released a fix. Please see the references for more information.
Solution:
The vendor has released a fix. Please see the references for more information.