InterNetNews 'STARTTLS' Implementation Plaintext Arbitrary Command Injection Vulnerability
BID:55146
Info
InterNetNews 'STARTTLS' Implementation Plaintext Arbitrary Command Injection Vulnerability
| Bugtraq ID: | 55146 |
| Class: | Input Validation Error |
| CVE: |
CVE-2012-3523 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 18 2012 12:00AM |
| Updated: | Mar 19 2015 09:39AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
Mandriva Linux Mandrake 2011 x86_64 Mandriva Linux Mandrake 2011 ISC INN 2.4.1 ISC INN 2.4 .0 ISC INN 2.3.3 ISC INN 2.3.2 ISC INN 2.3.1 ISC INN 2.3 ISC INN 2.2.3 ISC INN 2.2.2 ISC INN 2.2.1 ISC INN 2.2 ISC INN 2.1 ISC INN 2.0 ISC INN 1.7.2 ISC INN 1.7 ISC INN 1.5.1 ISC INN 1.5 ISC INN 1.4 unoff4 ISC INN 1.4 unoff3 ISC INN 1.4 sec2 ISC INN 1.4 sec Gentoo Linux |
| Not Vulnerable: | |
Discussion
InterNetNews 'STARTTLS' Implementation Plaintext Arbitrary Command Injection Vulnerability
InterNetNews implementation of STARTTLS is prone to a vulnerability that lets attackers inject arbitrary commands.
An attacker can exploit this issue to execute arbitrary commands in the context of the user running the application. Successful exploits can allow attackers to obtain usernames and passwords.
INN versions prior to 2.5.3.
InterNetNews implementation of STARTTLS is prone to a vulnerability that lets attackers inject arbitrary commands.
An attacker can exploit this issue to execute arbitrary commands in the context of the user running the application. Successful exploits can allow attackers to obtain usernames and passwords.
INN versions prior to 2.5.3.
Exploit / POC
InterNetNews 'STARTTLS' Implementation Plaintext Arbitrary Command Injection Vulnerability
Attackers perform a man-in-the-middle attack to exploit this issue.
Attackers perform a man-in-the-middle attack to exploit this issue.
Solution / Fix
InterNetNews 'STARTTLS' Implementation Plaintext Arbitrary Command Injection Vulnerability
Solution:
Vendor updates are available. Please see the references for more information.
Solution:
Vendor updates are available. Please see the references for more information.
References
InterNetNews 'STARTTLS' Implementation Plaintext Arbitrary Command Injection Vulnerability
References:
References: