Tahoe-LAFS 'cancellation secret' Arbitrary File Deletion Vulnerability
BID:49641
Info
Tahoe-LAFS 'cancellation secret' Arbitrary File Deletion Vulnerability
| Bugtraq ID: | 49641 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 13 2011 12:00AM |
| Updated: | Sep 13 2011 12:00AM |
| Credit: | Reported by the vendor |
| Vulnerable: |
Tahoe-LAFS Tahoe-LAFS 1.8.2 Tahoe-LAFS Tahoe-LAFS 1.7.1 Tahoe-LAFS Tahoe-LAFS 1.6.1 Tahoe-LAFS Tahoe-LAFS 1.3.0 |
| Not Vulnerable: |
Tahoe-LAFS Tahoe-LAFS 1.8.3 |
Discussion
Tahoe-LAFS 'cancellation secret' Arbitrary File Deletion Vulnerability
Tahoe-LAFS is prone to a vulnerability that lets attackers delete arbitrary shares on an affected computer in the context of the Web server.
Successful exploits may aid in launching further attacks.
Tahoe-LAFS 1.3.0 through 1.8.2 are vulnerable; other versions may also be affected.
Tahoe-LAFS is prone to a vulnerability that lets attackers delete arbitrary shares on an affected computer in the context of the Web server.
Successful exploits may aid in launching further attacks.
Tahoe-LAFS 1.3.0 through 1.8.2 are vulnerable; other versions may also be affected.
Exploit / POC
Tahoe-LAFS 'cancellation secret' Arbitrary File Deletion Vulnerability
Attackers can use a browser to exploit this issue.
Attackers can use a browser to exploit this issue.
Solution / Fix
Tahoe-LAFS 'cancellation secret' Arbitrary File Deletion Vulnerability
Solution:
Updates are available. Please see the references for details.
Solution:
Updates are available. Please see the references for details.
References
Tahoe-LAFS 'cancellation secret' Arbitrary File Deletion Vulnerability
References:
References:
- [tahoe-dev] announcing Tahoe-LAFS v1.8.3, fixing a security issue (Tahoe-LAFS)
- escalation of authority from knowing a storage index to being able to delete cor (Tahoe-LAFS)
- Vendor Homepage (Tahoe-LAFS)