BusyBox 'udhcpc' Shell Characters in Response Remote Code Execution Vulnerability
BID:48879
Info
BusyBox 'udhcpc' Shell Characters in Response Remote Code Execution Vulnerability
| Bugtraq ID: | 48879 |
| Class: | Input Validation Error |
| CVE: |
CVE-2011-2716 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 25 2011 12:00AM |
| Updated: | Dec 10 2013 12:56AM |
| Credit: | Reported by the vendor. |
| Vulnerable: |
Red Hat Enterprise Linux Workstation Optional 6 Red Hat Enterprise Linux Workstation 6 Red Hat Enterprise Linux Server Optional 6 Red Hat Enterprise Linux Server 6 Red Hat Enterprise Linux HPC Node Optional 6 Red Hat Enterprise Linux HPC Node 6 Red Hat Enterprise Linux Desktop Optional 6 Red Hat Enterprise Linux Desktop 6 Red Hat Enterprise Linux Desktop 5 client Red Hat Enterprise Linux 5 Server Oracle Enterprise Linux 5 Mandriva Linux Mandrake 2011 x86_64 Mandriva Linux Mandrake 2011 MandrakeSoft Enterprise Server 5 x86_64 MandrakeSoft Enterprise Server 5 Gentoo Linux BusyBox BusyBox 1.18.5 Avaya Voice Portal 5.1.2 Avaya Voice Portal 5.1.1 Avaya Voice Portal 5.1 SP1 Avaya Voice Portal 5.1 Avaya Voice Portal 5.1 Avaya Voice Portal 5.0 SP2 Avaya Voice Portal 5.0 SP1 Avaya Voice Portal 5.0 Avaya Proactive Contact 5.0 Avaya Aura Presence Services 6.1.1 Avaya Aura Presence Services 6.1 Avaya Aura Presence Services 6.0 Avaya Aura Messaging 6.0.1 Avaya Aura Messaging 6.0 Avaya Aura Experience Portal 6.0 Avaya Aura Communication Manager 6.0.1 Avaya Aura Communication Manager 6.0 Avaya Aura Application Enablement Services 5.2.1 Avaya Aura Application Enablement Services 6.1.1 Avaya Aura Application Enablement Services 6.1 Avaya Aura Application Enablement Services 5.2.3 Avaya Aura Application Enablement Services 5.2.2 Avaya Aura Application Enablement Services 5.2 |
| Not Vulnerable: | |
Discussion
BusyBox 'udhcpc' Shell Characters in Response Remote Code Execution Vulnerability
The BusyBox DHCP client 'udhcpc' is prone to a remote code-execution vulnerability because it fails to properly escape certain shell meta-characters from DHCP server responses.
A remote attacker can exploit this issue through a rogue DHCP server.
Successfully exploiting this issue allows a remote attacker to execute arbitrary code with superuser privileges, resulting in a complete compromise of the affected computer.
The BusyBox DHCP client 'udhcpc' is prone to a remote code-execution vulnerability because it fails to properly escape certain shell meta-characters from DHCP server responses.
A remote attacker can exploit this issue through a rogue DHCP server.
Successfully exploiting this issue allows a remote attacker to execute arbitrary code with superuser privileges, resulting in a complete compromise of the affected computer.
Exploit / POC
BusyBox 'udhcpc' Shell Characters in Response Remote Code Execution Vulnerability
Attackers can use readily available tools to exploit this issue.
Attackers can use readily available tools to exploit this issue.
Solution / Fix
BusyBox 'udhcpc' Shell Characters in Response Remote Code Execution Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
BusyBox 'udhcpc' Shell Characters in Response Remote Code Execution Vulnerability
References:
References: