Etnus TotalView Insecure UID/GID Privilege Escalation Vulnerability
BID:4365
Info
Etnus TotalView Insecure UID/GID Privilege Escalation Vulnerability
| Bugtraq ID: | 4365 |
| Class: | Configuration Error |
| CVE: |
CVE-2002-0498 |
| Remote: | No |
| Local: | Yes |
| Published: | Mar 26 2002 12:00AM |
| Updated: | Jul 11 2009 11:56AM |
| Credit: | Discovery of this issue is credited to "Andrew Griffiths" <[email protected]>. |
| Vulnerable: |
Etnus TotalView 5.0 .0-4 |
| Not Vulnerable: | |
Discussion
Etnus TotalView Insecure UID/GID Privilege Escalation Vulnerability
TotalView is a debugger for programs written in the C, C++, and Fortran. It is maintained by Etnus and is available for a number of Linux and Unix variants.
TotalView, when installed, creates some files/directories with write permissions for UID 5039/GID 59. Normally, these files and directories would be created with a UID/GID of root. A local attacker who has access to an account with UID 5039 or GID 59 may be able to backdoor the affected files, which will result in an elevation of privleges when affected files are executed through TotalView by the root user.
This vulnerability has been reported for version 5.0.0-4 on the Linux platform. Other versions/platforms may also be affected.
TotalView is a debugger for programs written in the C, C++, and Fortran. It is maintained by Etnus and is available for a number of Linux and Unix variants.
TotalView, when installed, creates some files/directories with write permissions for UID 5039/GID 59. Normally, these files and directories would be created with a UID/GID of root. A local attacker who has access to an account with UID 5039 or GID 59 may be able to backdoor the affected files, which will result in an elevation of privleges when affected files are executed through TotalView by the root user.
This vulnerability has been reported for version 5.0.0-4 on the Linux platform. Other versions/platforms may also be affected.
Exploit / POC
Etnus TotalView Insecure UID/GID Privilege Escalation Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Etnus TotalView Insecure UID/GID Privilege Escalation Vulnerability
Solution:
It has been reported that the vendor has addressed this problem, however, this has not been confirmed. Affected users should contact the vendor about the availability of fixes.
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
It has been reported that the vendor has addressed this problem, however, this has not been confirmed. Affected users should contact the vendor about the availability of fixes.
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Etnus TotalView Insecure UID/GID Privilege Escalation Vulnerability
References:
References:
- Etnus TotalView Homepage (Etnus)