initscripts Arbitrary File Deletion Vulnerability
BID:31385
Info
initscripts Arbitrary File Deletion Vulnerability
| Bugtraq ID: | 31385 |
| Class: | Design Error |
| CVE: |
CVE-2008-3524 |
| Remote: | No |
| Local: | Yes |
| Published: | Sep 24 2008 12:00AM |
| Updated: | Apr 13 2015 10:26PM |
| Credit: | Herbert Poetzl |
| Vulnerable: |
rPath rPath Linux 2 rPath rPath Linux 1 rPath Appliance Platform Linux Service 2 rPath Appliance Platform Linux Service 1 Redhat initscripts 8.76.3 |
| Not Vulnerable: |
Redhat initscripts 8.76.3-1 |
Discussion
initscripts Arbitrary File Deletion Vulnerability
The 'initscripts' package is prone to a file-deletion vulnerability.
An attacker can exploit this issue to delete any files or directories on the affected computer.
This issue affects initscripts 8.76.3; other versions may also be affected.
The 'initscripts' package is prone to a file-deletion vulnerability.
An attacker can exploit this issue to delete any files or directories on the affected computer.
This issue affects initscripts 8.76.3; other versions may also be affected.
Exploit / POC
initscripts Arbitrary File Deletion Vulnerability
Attackers can exploit the issue using standard commands.
Attackers can exploit the issue using standard commands.
Solution / Fix
initscripts Arbitrary File Deletion Vulnerability
Solution:
The vendor has released an update. Please see the references for more information.
Solution:
The vendor has released an update. Please see the references for more information.
References
initscripts Arbitrary File Deletion Vulnerability
References:
References: