jhead Versions Prior to 2.84 Multiple Vulnerabilities
BID:31770
Info
jhead Versions Prior to 2.84 Multiple Vulnerabilities
| Bugtraq ID: | 31770 |
| Class: | Unknown |
| CVE: |
CVE-2008-4575 CVE-2008-4639 |
| Remote: | No |
| Local: | Yes |
| Published: | Oct 15 2008 12:00AM |
| Updated: | Apr 13 2015 09:46PM |
| Credit: | Marc Merlin and John Dong |
| Vulnerable: |
S.u.S.E. openSUSE 11.1 S.u.S.E. openSUSE 11.0 S.u.S.E. openSUSE 10.3 Matthias Wandel jhead 2.83 Mandriva Linux Mandrake 2009.0 x86_64 Mandriva Linux Mandrake 2009.0 Mandriva Linux Mandrake 2008.1 x86_64 Mandriva Linux Mandrake 2008.1 Mandriva Linux Mandrake 2008.0 x86_64 Mandriva Linux Mandrake 2008.0 Gentoo Linux |
| Not Vulnerable: |
Matthias Wandel jhead 2.84 |
Discussion
jhead Versions Prior to 2.84 Multiple Vulnerabilities
The 'jhead' tool is prone to multiple vulnerabilities:
- Multiple buffer-overflow vulnerabilities
- An insecure-temporary-file-creation vulnerability
- Multiple unspecified vulnerabilities
Attackers can exploit these issues to execute arbitrary code within the context of the affected application, crash the affected application, perform symbolic-link attacks, and overwrite arbitrary files on the affected computer. Other attacks are also possible.
Versions prior to jhead 2.84 are vulnerable.
The 'jhead' tool is prone to multiple vulnerabilities:
- Multiple buffer-overflow vulnerabilities
- An insecure-temporary-file-creation vulnerability
- Multiple unspecified vulnerabilities
Attackers can exploit these issues to execute arbitrary code within the context of the affected application, crash the affected application, perform symbolic-link attacks, and overwrite arbitrary files on the affected computer. Other attacks are also possible.
Versions prior to jhead 2.84 are vulnerable.
Exploit / POC
jhead Versions Prior to 2.84 Multiple Vulnerabilities
An attacker uses readily available commands to exploit the insecure-temporary-file-creation issue.
Currently we are not aware of any working exploits for the buffer-overflow issues. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
An attacker uses readily available commands to exploit the insecure-temporary-file-creation issue.
Currently we are not aware of any working exploits for the buffer-overflow issues. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
jhead Versions Prior to 2.84 Multiple Vulnerabilities
Solution:
Updates are available. Please see the references for more information.
Matthias Wandel jhead 2.83
Mandriva Linux Mandrake 2009.0 x86_64
Mandriva Linux Mandrake 2008.1 x86_64
Mandriva Linux Mandrake 2008.0 x86_64
Mandriva Linux Mandrake 2008.1
Mandriva Linux Mandrake 2008.0
Mandriva Linux Mandrake 2009.0
Solution:
Updates are available. Please see the references for more information.
Matthias Wandel jhead 2.83
-
Matthias Wandel jhead-2.84.tar.gz
http://www.sentex.net/~mwandel/jhead/jhead-2.84.tar.gz
Mandriva Linux Mandrake 2009.0 x86_64
-
Mandriva jhead-2.86-0.1mdv2009.0.x86_64.rpm
http://www.mandriva.com/en/download/
Mandriva Linux Mandrake 2008.1 x86_64
-
Mandriva jhead-2.86-0.1mdv2008.1.x86_64.rpm
http://www.mandriva.com/en/download/
Mandriva Linux Mandrake 2008.0 x86_64
-
Mandriva jhead-2.86-0.1mdv2008.0.x86_64.rpm
http://www.mandriva.com/en/download/
Mandriva Linux Mandrake 2008.1
-
Mandriva jhead-2.86-0.1mdv2008.1.i586.rpm
http://www.mandriva.com/en/download/
Mandriva Linux Mandrake 2008.0
-
Mandriva jhead-2.86-0.1mdv2008.0.i586.rpm
http://www.mandriva.com/en/download/
Mandriva Linux Mandrake 2009.0
-
Mandriva jhead-2.86-0.1mdv2009.0.i586.rpm
http://www.mandriva.com/en/download/
References
jhead Versions Prior to 2.84 Multiple Vulnerabilities
References:
References:
- jhead Homepage (Matthias Wandel)
- CVE request: jhead (Marc Merlin and John Dong)
- jhead: multiple security vulnerabilities (Marc Merlin and John Dong)
- Re: CVE request: jhead (Steven M. Christey)