SLRN Arbitrary Shell Script Execution Vulnerability
BID:3364
Info
SLRN Arbitrary Shell Script Execution Vulnerability
| Bugtraq ID: | 3364 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 24 2001 12:00AM |
| Updated: | Sep 24 2001 12:00AM |
| Credit: | This vulnerability was originally discovered by Byrial Jensen, and announced to the Bugtraq mailing list on September 24, 2001 in a Debian Security Advisory. |
| Vulnerable: |
SLRN Development Team slrn 0.9.6 .2 |
| Not Vulnerable: | |
Discussion
SLRN Arbitrary Shell Script Execution Vulnerability
slrn is a freely available NTTP reader by Thomas Schultz. It is maintained and developed by the slrn project.
A problem in the program has been discovered that could allow arbitrary command execution. When a user of slrn downloads a post with a binary contained, slrn will execute any shell script contained in the post included with the binary.
This could lead to arbitrary command execution, and a remote user gaining access to the system with the privileges of the slrn user. This is currently known to affect only Debian Linux.
slrn is a freely available NTTP reader by Thomas Schultz. It is maintained and developed by the slrn project.
A problem in the program has been discovered that could allow arbitrary command execution. When a user of slrn downloads a post with a binary contained, slrn will execute any shell script contained in the post included with the binary.
This could lead to arbitrary command execution, and a remote user gaining access to the system with the privileges of the slrn user. This is currently known to affect only Debian Linux.
Exploit / POC
SLRN Arbitrary Shell Script Execution Vulnerability
An exploit is not required for this vulnerability.
An exploit is not required for this vulnerability.
Solution / Fix
SLRN Arbitrary Shell Script Execution Vulnerability
Solution:
Fixes available:
SLRN Development Team slrn 0.9.6 .2
Solution:
Fixes available:
SLRN Development Team slrn 0.9.6 .2
-
Debian 2.2 alpha slrn_0.9.6.2-9potato2_alpha.deb
http://security.debian.org/dists/stable/updates/main/binary-alpha/slrn _0.9.6.2-9potato2_alpha.deb -
Debian 2.2 alpha slrnpull_0.9.6.2-9potato2_alpha.deb
http://security.debian.org/dists/stable/updates/main/binary-alpha/slrn pull_0.9.6.2-9potato2_alpha.deb -
Debian 2.2 arm slrn_0.9.6.2-9potato2_arm.deb
http://security.debian.org/dists/stable/updates/main/binary-arm/slrn_0 .9.6.2-9potato2_arm.deb -
Debian 2.2 arm slrnpull_0.9.6.2-9potato2_arm.deb
http://security.debian.org/dists/stable/updates/main/binary-arm/slrnpu ll_0.9.6.2-9potato2_arm.deb -
Debian 2.2 i386 slrn_0.9.6.2-9potato2_i386.deb
http://security.debian.org/dists/stable/updates/main/binary-i386/slrn_ 0.9.6.2-9potato2_i386.deb -
Debian 2.2 i386 slrnpull_0.9.6.2-9potato2_i386.deb
http://security.debian.org/dists/stable/updates/main/binary-i386/slrnp ull_0.9.6.2-9potato2_i386.deb -
Debian 2.2 m68k slrn_0.9.6.2-9potato2_m68k.deb
http://security.debian.org/dists/stable/updates/main/binary-m68k/slrn_ 0.9.6.2-9potato2_m68k.deb -
Debian 2.2 m68k slrnpull_0.9.6.2-9potato2_m68k.deb
http://security.debian.org/dists/stable/updates/main/binary-m68k/slrnp ull_0.9.6.2-9potato2_m68k.deb -
Debian 2.2 ppc slrn_0.9.6.2-9potato2_powerpc.deb
http://security.debian.org/dists/stable/updates/main/binary-powerpc/sl rn_0.9.6.2-9potato2_powerpc.deb -
Debian 2.2 ppc slrnpull_0.9.6.2-9potato2_powerpc.deb
http://security.debian.org/dists/stable/updates/main/binary-powerpc/sl rnpull_0.9.6.2-9potato2_powerpc.deb -
Debian 2.2 sparc slrn_0.9.6.2-9potato2_sparc.deb
http://security.debian.org/dists/stable/updates/main/binary-sparc/slrn _0.9.6.2-9potato2_sparc.deb -
Debian 2.2 sparc slrnpull_0.9.6.2-9potato2_sparc.deb
http://security.debian.org/dists/stable/updates/main/binary-sparc/slrn pull_0.9.6.2-9potato2_sparc.deb
References
SLRN Arbitrary Shell Script Execution Vulnerability
References:
References: