Cherokee HTTPD Directory Traversal Vulnerability
BID:3772
Info
Cherokee HTTPD Directory Traversal Vulnerability
| Bugtraq ID: | 3772 |
| Class: | Input Validation Error |
| CVE: |
CVE-2001-1432 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 29 2001 12:00AM |
| Updated: | Mar 19 2015 09:06AM |
| Credit: | This issue was initially publicized in a GOBBLES advisory on December 29th, 2001. |
| Vulnerable: |
Cherokee-Project Cherokee HTTPD 0.2.7 Cherokee-Project Cherokee HTTPD 0.2.6 Cherokee-Project Cherokee HTTPD 0.2.5 Cherokee-Project Cherokee HTTPD 0.2 Cherokee-Project Cherokee HTTPD 0.1.6 Cherokee-Project Cherokee HTTPD 0.1.5 Cherokee-Project Cherokee HTTPD 0.1 |
| Not Vulnerable: | |
Discussion
Cherokee HTTPD Directory Traversal Vulnerability
Cherokee is a compact web server which provides fast delivery of web content. It is freely available and distributed under the GPL. It runs on Linux and other Unix systems.
Cherokee is prone to directory traversal attacks. By appending '../' sequences to a web request, it is possible for an attacker to browse the filesystem of the host.
Furthermore, another issue is known to exist in Cherokee which increases the impact of this vulnerability dramatically. BugTraq ID 3771, "Cherokee HTTPD Insecure Privilege Release Vulnerability" describes a problem in which Cherokee web server fails to drop root privileges after binding to port 80. The implication is that an attacker may browse any file on the system, as the web server is running with root privileges.
Cherokee is a compact web server which provides fast delivery of web content. It is freely available and distributed under the GPL. It runs on Linux and other Unix systems.
Cherokee is prone to directory traversal attacks. By appending '../' sequences to a web request, it is possible for an attacker to browse the filesystem of the host.
Furthermore, another issue is known to exist in Cherokee which increases the impact of this vulnerability dramatically. BugTraq ID 3771, "Cherokee HTTPD Insecure Privilege Release Vulnerability" describes a problem in which Cherokee web server fails to drop root privileges after binding to port 80. The implication is that an attacker may browse any file on the system, as the web server is running with root privileges.
Exploit / POC
Cherokee HTTPD Directory Traversal Vulnerability
This issue may be exploited with a web browser.
This issue may be exploited with a web browser.
Solution / Fix
Cherokee HTTPD Directory Traversal Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Cherokee HTTPD Directory Traversal Vulnerability
References:
References:
- [VulnWatch] Remote Root Hole in Cherokee Webserver (VulnWatch)
- Cherokee Homepage (Cherokee)