USB Creator Local Security Bypass Vulnerability
BID:47679
Info
USB Creator Local Security Bypass Vulnerability
| Bugtraq ID: | 47679 |
| Class: | Design Error |
| CVE: |
CVE-2011-1828 |
| Remote: | No |
| Local: | Yes |
| Published: | May 02 2011 12:00AM |
| Updated: | May 02 2011 12:00AM |
| Credit: | Evan Broder |
| Vulnerable: |
USB Creator usb-creator 0 Ubuntu Ubuntu Linux 11.04 powerpc Ubuntu Ubuntu Linux 11.04 i386 Ubuntu Ubuntu Linux 11.04 ARM Ubuntu Ubuntu Linux 11.04 amd64 Ubuntu Ubuntu Linux 10.10 powerpc Ubuntu Ubuntu Linux 10.10 i386 Ubuntu Ubuntu Linux 10.10 ARM Ubuntu Ubuntu Linux 10.10 amd64 Ubuntu Ubuntu Linux 10.04 sparc Ubuntu Ubuntu Linux 10.04 powerpc Ubuntu Ubuntu Linux 10.04 i386 Ubuntu Ubuntu Linux 10.04 ARM Ubuntu Ubuntu Linux 10.04 amd64 |
| Not Vulnerable: | |
Discussion
USB Creator Local Security Bypass Vulnerability
USB Creator is prone to a local security-bypass vulnerability because it fails to properly sanitize user-supplied input.
Attackers can exploit this issue to bypass certain security restrictions which may lead to further attacks.
USB Creator is prone to a local security-bypass vulnerability because it fails to properly sanitize user-supplied input.
Attackers can exploit this issue to bypass certain security restrictions which may lead to further attacks.
Exploit / POC
USB Creator Local Security Bypass Vulnerability
Attackers can use readily available commands to exploit this issue.
Attackers can use readily available commands to exploit this issue.
Solution / Fix
USB Creator Local Security Bypass Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.