Dell 'Crowbar ohai' Plugin Local Privilege Escalation Vulnerability
BID:55240
Info
Dell 'Crowbar ohai' Plugin Local Privilege Escalation Vulnerability
| Bugtraq ID: | 55240 |
| Class: | Design Error |
| CVE: |
CVE-2012-3537 |
| Remote: | No |
| Local: | Yes |
| Published: | Aug 28 2012 12:00AM |
| Updated: | Aug 28 2012 12:00AM |
| Credit: | Thomas Biege |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Dell 'Crowbar ohai' Plugin Local Privilege Escalation Vulnerability
The Crowbar ohai plugin is prone to a local privilege-escalation vulnerability because it uses temporary files in an insecure manner.
An attacker can exploit this issue to execute arbitrary code with elevated privileges. Successful exploits will result in the complete compromise of affected computers.
The Crowbar ohai plugin is prone to a local privilege-escalation vulnerability because it uses temporary files in an insecure manner.
An attacker can exploit this issue to execute arbitrary code with elevated privileges. Successful exploits will result in the complete compromise of affected computers.
Exploit / POC
Dell 'Crowbar ohai' Plugin Local Privilege Escalation Vulnerability
Currently we are not aware of any exploits. If you feel we are in error or if you are aware of any more recent information, please mail us at: [email protected].
Currently we are not aware of any exploits. If you feel we are in error or if you are aware of any more recent information, please mail us at: [email protected].
Solution / Fix
Dell 'Crowbar ohai' Plugin Local Privilege Escalation Vulnerability
Solution:
Fixes are available in the repository. Please see the references for more information.
Solution:
Fixes are available in the repository. Please see the references for more information.
References
Dell 'Crowbar ohai' Plugin Local Privilege Escalation Vulnerability
References:
References: