klibc DHCP Options Processing Remote Shell Command Execution Vulnerability
BID:47924
CVE-2011-1930 |Info
klibc DHCP Options Processing Remote Shell Command Execution Vulnerability
| Bugtraq ID: | 47924 |
| Class: | Input Validation Error |
| CVE: |
CVE-2011-1930 |
| Remote: | Yes |
| Local: | No |
| Published: | May 18 2011 12:00AM |
| Updated: | Sep 28 2013 12:14AM |
| Credit: | maximilian attems |
| Vulnerable: |
Pardus Linux 2009 0 Linux klibc 1.5.21 Linux klibc 1.5.20 Gentoo Linux |
| Not Vulnerable: |
Linux klibc 1.5.22 |
Discussion
klibc DHCP Options Processing Remote Shell Command Execution Vulnerability
klibc is prone to a shell-command-execution vulnerability because the application fails to properly sanitize user-supplied input.
An attacker can exploit this issue to execute arbitrary shell commands in the context of the application that uses the vulnerable library.
Versions prior to klibc 1.5.22 are vulnerable.
klibc is prone to a shell-command-execution vulnerability because the application fails to properly sanitize user-supplied input.
An attacker can exploit this issue to execute arbitrary shell commands in the context of the application that uses the vulnerable library.
Versions prior to klibc 1.5.22 are vulnerable.
Exploit / POC
klibc DHCP Options Processing Remote Shell Command Execution Vulnerability
The following proof-of-concept is available:
DNSDOMAIN="\\\"\$(echo owned; touch /tmp/owned)"
The following proof-of-concept is available:
DNSDOMAIN="\\\"\$(echo owned; touch /tmp/owned)"
Solution / Fix
klibc DHCP Options Processing Remote Shell Command Execution Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
klibc DHCP Options Processing Remote Shell Command Execution Vulnerability
References:
References: