EFingerD User Configuration File Command Execution Vulnerability
BID:4240
Info
EFingerD User Configuration File Command Execution Vulnerability
| Bugtraq ID: | 4240 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Mar 06 2002 12:00AM |
| Updated: | Mar 06 2002 12:00AM |
| Credit: | This vulnerability discovery credited to Spybreak <[email protected]>. |
| Vulnerable: |
efingerd efingerd 1.6.1 efingerd efingerd 1.3 |
| Not Vulnerable: | |
Discussion
EFingerD User Configuration File Command Execution Vulnerability
efingerd is a freely available, open source finger daemon for use on the Linux operating system. It is publicly developed and maintained.
Under some circumstances, it is possible to execute commands and hide the origin. When a user is fingered by an outside host, efingerd searches the users home directory for the existence of the .efingerd file. If the .efingerd file exists, and it is executable, efingerd will execute the program with the permissions of nobody.
efingerd is a freely available, open source finger daemon for use on the Linux operating system. It is publicly developed and maintained.
Under some circumstances, it is possible to execute commands and hide the origin. When a user is fingered by an outside host, efingerd searches the users home directory for the existence of the .efingerd file. If the .efingerd file exists, and it is executable, efingerd will execute the program with the permissions of nobody.
Exploit / POC
EFingerD User Configuration File Command Execution Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
EFingerD User Configuration File Command Execution Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
EFingerD User Configuration File Command Execution Vulnerability
References:
References: