Perl suidmount Vulnerability
BID:339
Info
Perl suidmount Vulnerability
| Bugtraq ID: | 339 |
| Class: | Environment Error |
| CVE: |
CVE-1999-0462 |
| Remote: | No |
| Local: | Yes |
| Published: | Mar 17 1999 12:00AM |
| Updated: | Jul 11 2009 12:16AM |
| Credit: | First posted to BugTraq by Brian McCauley <[email protected]> on January 14, 1999. |
| Vulnerable: |
SuSE Linux 5.3 |
| Not Vulnerable: |
FreeBSD FreeBSD 2.2.8 |
Discussion
Perl suidmount Vulnerability
Perl 5.0004_4, included with S.u.S.E. Linux 5.3 and several other distributions, carries with it a vulnerability associated with suid script emulation. When suidperl obtains fstat information for the script it is running, it does not acknowledge whether the filesystem the script resides on is mounted nonsuid or not. Therefore, it is possible that suid perl scripts may be run from non-suid mounts with suid root priviliges -- allowing a root compromise.
Perl 5.0004_4, included with S.u.S.E. Linux 5.3 and several other distributions, carries with it a vulnerability associated with suid script emulation. When suidperl obtains fstat information for the script it is running, it does not acknowledge whether the filesystem the script resides on is mounted nonsuid or not. Therefore, it is possible that suid perl scripts may be run from non-suid mounts with suid root priviliges -- allowing a root compromise.
References
Perl suidmount Vulnerability
References:
References: