oping Local Information Disclosure Vulnerability
BID:42922
Info
oping Local Information Disclosure Vulnerability
| Bugtraq ID: | 42922 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Sep 28 2009 12:00AM |
| Updated: | Sep 28 2009 12:00AM |
| Credit: | Steve Kemp |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
oping Local Information Disclosure Vulnerability
oping is prone to a local information-disclosure vulnerability.
Successful exploits will allow attackers to gain access to the contents of configuration files. This may lead to further attacks.
oping 1.3.2-1 is vulnerable; other versions may also be affected.
oping is prone to a local information-disclosure vulnerability.
Successful exploits will allow attackers to gain access to the contents of configuration files. This may lead to further attacks.
oping 1.3.2-1 is vulnerable; other versions may also be affected.
Exploit / POC
oping Local Information Disclosure Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
oping Local Information Disclosure Vulnerability
Solution:
Updates are available. Please see the references for details.
Solution:
Updates are available. Please see the references for details.
References
oping Local Information Disclosure Vulnerability
References:
References:
- oping allows reading arbitrary files upon the local system (Debian)
- oping Homepage (Debian)