Util-Linux Login Pam Privilege Elevation Vulnerability
BID:3415
Info
Util-Linux Login Pam Privilege Elevation Vulnerability
| Bugtraq ID: | 3415 |
| Class: | Environment Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Oct 09 2001 12:00AM |
| Updated: | Oct 09 2001 12:00AM |
| Credit: | This vulnerability was announced by Devrim SERAL <[email protected]> via Bugtraq on October 9, 2001. |
| Vulnerable: |
Redhat util-linux-2.10s-12.i386.rpm Andries Brouwer util-linux 2.11 l Andries Brouwer util-linux 2.11 k Andries Brouwer util-linux 2.11 i Andries Brouwer util-linux 2.11 h Andries Brouwer util-linux 2.11 f Andries Brouwer util-linux 2.10 s |
| Not Vulnerable: | |
Discussion
Util-Linux Login Pam Privilege Elevation Vulnerability
util-linux is a freely available, open source software package that provides some implementations of standard UNIX utilities, such as login.
A problem in the package has been discovered that could allow a local user to gain elevated privileges. When the number of users that access the system using a program that relies on the login program are regulated via pam_limits, it could result in unpredictable behavior. Users logging in may gain the rights of console or pts/0.
util-linux is a freely available, open source software package that provides some implementations of standard UNIX utilities, such as login.
A problem in the package has been discovered that could allow a local user to gain elevated privileges. When the number of users that access the system using a program that relies on the login program are regulated via pam_limits, it could result in unpredictable behavior. Users logging in may gain the rights of console or pts/0.
Exploit / POC
Util-Linux Login Pam Privilege Elevation Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Util-Linux Login Pam Privilege Elevation Vulnerability
Solution:
Vendor fixes available:
Redhat util-linux-2.10s-12.i386.rpm
Andries Brouwer util-linux 2.10 s
Andries Brouwer util-linux 2.11 f
Andries Brouwer util-linux 2.11 h
Solution:
Vendor fixes available:
Redhat util-linux-2.10s-12.i386.rpm
-
Red Hat 7.1 i386 util-linux-2.11f-11.7.1.i386.rpm
ftp://updates.redhat.com/7.1/en/os/i386/util-linux-2.11f-11.7.1.i386.r pm
Andries Brouwer util-linux 2.10 s
-
MandrakeSoft 8.0 i586 util-linux-2.10s-3.1mdk.i586.rpm
ftp://fr2.rpmfind.net/linux/Mandrake/updates/8.0/RPMS/util-linux-2.10s -3.1mdk.i586.rpm -
RedHat 7.2 i386 util-linux-2.11f-12.i386.rpm
ftp://updates.redhat.com/7.2/en/os/i386/util-linux-2.11f-12.i386.rpm
Andries Brouwer util-linux 2.11 f
-
Red Hat 7.1 alpha util-linux-2.11f-11.7.1.alpha.rpm
ftp://updates.redhat.com/7.1/en/os/alpha/util-linux-2.11f-11.7.1.alpha .rpm -
Red Hat 7.1 i386 util-linux-2.11f-11.7.1.i386.rpm
ftp://updates.redhat.com/7.1/en/os/i386/util-linux-2.11f-11.7.1.i386.r pm -
Red Hat 7.1 ia64 util-linux-2.11f-11.7.1.ia64.rpm
ftp://updates.redhat.com/7.1/en/os/ia64/util-linux-2.11f-11.7.1.ia64.r pm -
Trustix Trustix 1.5 losetup-2.11f-6tr.i586.rpm
ftp://ftp.trustix.net/pub/Trustix/updates/1.5/RPMS/losetup-2.11f-6tr.i 586.rpm -
Trustix Trustix 1.5 mount-2.11f-6tr.i586.rpm
ftp://ftp.trustix.net/pub/Trustix/updates/1.5/RPMS/mount-2.11f-6tr.i58 6.rpm -
Trustix Trustix 1.5 util-linux-2.11f-6tr.i586.rpm
ftp://ftp.trustix.net/pub/Trustix/updates/1.5/RPMS/util-linux-2.11f-6t r.i586.rpm
Andries Brouwer util-linux 2.11 h
-
MandrakeSoft 8.0 ppc util-linux-2.11h-3.2mdk.ppc.rpm
ftp://fr2.rpmfind.net/linux/Mandrake/updates/ppc/8.0/RPMS/util-linux-2 .11h-3.2mdk.ppc.rpm -
MandrakeSoft 8.1 i586 util-linux-2.11h-3.1mdk.i586.rpm
ftp://fr2.rpmfind.net/linux/Mandrake/updates/8.1/RPMS/util-linux-2.11h -3.1mdk.i586.rpm