Linux libc NLSPATH Vulnerability
BID:379
Info
Linux libc NLSPATH Vulnerability
| Bugtraq ID: | 379 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Jan 19 1998 12:00AM |
| Updated: | Jan 19 1998 12:00AM |
| Credit: | First posted to BugTraq by solar <[email protected]> on February 13, 1997. |
| Vulnerable: |
Slackware Linux 3.1 Redhat Linux 4.0 Linux libc 5.3.12 |
| Not Vulnerable: |
Slackware Linux 3.2 Redhat Linux 6.0 Redhat Linux 5.2 i386 Redhat Linux 5.1 Redhat Linux 5.0 Linux libc 5.4 |
Discussion
Linux libc NLSPATH Vulnerability
There is a serious vulnerability in linux libc affecting all Linux distributions using libc 5.2.18 and below. The vulnerability is centered around the NLSPATH environment variable. Through exporting the oversized and shell-code including buffer to the environment variable NLSPATH, it is possible to exploit any setuid root program that's based on libc [almost all] and gain root access on the machine.
There is a serious vulnerability in linux libc affecting all Linux distributions using libc 5.2.18 and below. The vulnerability is centered around the NLSPATH environment variable. Through exporting the oversized and shell-code including buffer to the environment variable NLSPATH, it is possible to exploit any setuid root program that's based on libc [almost all] and gain root access on the machine.
Exploit / POC
Solution / Fix
Linux libc NLSPATH Vulnerability
Solution:
Upgrade either libc to 5.4 or your linux distribution immediately.
Solution:
Upgrade either libc to 5.4 or your linux distribution immediately.
References
Linux libc NLSPATH Vulnerability
References:
References: