Mozilla Predictable Temporary File Symbolic Link Attack Vulnerability
BID:3743
Info
Mozilla Predictable Temporary File Symbolic Link Attack Vulnerability
| Bugtraq ID: | 3743 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Dec 27 2001 12:00AM |
| Updated: | Dec 27 2001 12:00AM |
| Credit: | This vulnerability was announced by KF <[email protected]> via Bugtraq on December 26, 2001. |
| Vulnerable: |
Mozilla Browser 0.8 |
| Not Vulnerable: | |
Discussion
Mozilla Predictable Temporary File Symbolic Link Attack Vulnerability
Mozilla is a freely available, open source web browser. It is maintained and distributed by the Mozilla project.
When Mozilla is used to visit a secure site, a file is created insecurely in the /tmp directory. The .nmsc-0-lock file is created in the /tmp directory without checking for an existing file or symbolic link. It is possible for a local user to create a symbolic link to a file owned by another user, and when the user executes Mozilla and visits a secure site, the linked file will be overwritten.
Mozilla is a freely available, open source web browser. It is maintained and distributed by the Mozilla project.
When Mozilla is used to visit a secure site, a file is created insecurely in the /tmp directory. The .nmsc-0-lock file is created in the /tmp directory without checking for an existing file or symbolic link. It is possible for a local user to create a symbolic link to a file owned by another user, and when the user executes Mozilla and visits a secure site, the linked file will be overwritten.
Exploit / POC
Mozilla Predictable Temporary File Symbolic Link Attack Vulnerability
No exploit is required for this vulnerability.
No exploit is required for this vulnerability.
Solution / Fix
Mozilla Predictable Temporary File Symbolic Link Attack Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Mozilla Predictable Temporary File Symbolic Link Attack Vulnerability
References:
References:
- Bugzilla Homepage (Mozilla)