ibacm Denial of Service And Insecure File Permissions Vulnerabilities
BID:55890
Info
ibacm Denial of Service And Insecure File Permissions Vulnerabilities
| Bugtraq ID: | 55890 |
| Class: | Design Error |
| CVE: |
CVE-2012-4517 CVE-2012-4518 |
| Remote: | Yes |
| Local: | Yes |
| Published: | Oct 11 2012 12:00AM |
| Updated: | Mar 11 2013 07:24AM |
| Credit: | Florian Weimer from Red Hat Product Security Team |
| Vulnerable: |
Red Hat Enterprise Linux Workstation Optional 6 Red Hat Enterprise Linux Workstation 6 Red Hat Enterprise Linux Server Optional 6 Red Hat Enterprise Linux Server 6 Red Hat Enterprise Linux HPC Node Optional 6 Red Hat Enterprise Linux HPC Node 6 Red Hat Enterprise Linux Desktop Optional 6 Red Hat Enterprise Linux Desktop 6 Oracle Enterprise Linux 6.2 Oracle Enterprise Linux 6 CentOS CentOS 6 |
| Not Vulnerable: | |
Discussion
ibacm Denial of Service And Insecure File Permissions Vulnerabilities
ibacm is prone to a denial-of-service vulnerability and an insecure file-permission vulnerability.
Successful exploit of these issues allows an attacker to overwrite certain files with arbitrary data or to crash the affected application denying service to legitimate users.
ibacm is prone to a denial-of-service vulnerability and an insecure file-permission vulnerability.
Successful exploit of these issues allows an attacker to overwrite certain files with arbitrary data or to crash the affected application denying service to legitimate users.
Exploit / POC
ibacm Denial of Service And Insecure File Permissions Vulnerabilities
Attackers can exploit these issues using standard commands and tools.
Attackers can exploit these issues using standard commands and tools.
Solution / Fix
ibacm Denial of Service And Insecure File Permissions Vulnerabilities
Solution:
Vendor patches are available. Please see the references for more information.
Solution:
Vendor patches are available. Please see the references for more information.
References
ibacm Denial of Service And Insecure File Permissions Vulnerabilities
References:
References: