Redis Insecure Temporary File Handling Privilege Escalation Vulnerability
BID:57332
Info
Redis Insecure Temporary File Handling Privilege Escalation Vulnerability
| Bugtraq ID: | 57332 |
| Class: | Design Error |
| CVE: |
CVE-2013-0178 CVE-2013-0180 |
| Remote: | No |
| Local: | Yes |
| Published: | Jan 12 2013 12:00AM |
| Updated: | Jan 12 2013 12:00AM |
| Credit: | Michael Scherer |
| Vulnerable: |
Citrusbyte Redis 2.6 Citrusbyte Redis 2.4 |
| Not Vulnerable: |
Citrusbyte Redis 2.6.8 |
Discussion
Redis Insecure Temporary File Handling Privilege Escalation Vulnerability
Redis is prone to an insecure temporary file-handling vulnerability.
Successfully mounting a symlink attack may allow the attacker to overwrite sensitive files with elevated privileges.
Redis 2.4 and 2.6 are vulnerable; other versions may also be affected.
Redis is prone to an insecure temporary file-handling vulnerability.
Successfully mounting a symlink attack may allow the attacker to overwrite sensitive files with elevated privileges.
Redis 2.4 and 2.6 are vulnerable; other versions may also be affected.
Exploit / POC
Redis Insecure Temporary File Handling Privilege Escalation Vulnerability
An attacker can use readily available commands to launch attacks.
An attacker can use readily available commands to launch attacks.
Solution / Fix
Redis Insecure Temporary File Handling Privilege Escalation Vulnerability
Solution:
Updates are available. Please see the reference for more details.
Solution:
Updates are available. Please see the reference for more details.
References
Redis Insecure Temporary File Handling Privilege Escalation Vulnerability
References:
References:
- Bug 894659 - (CVE-2013-0178) CVE-2013-0178 redis 2.4: Insecure temporary flaw us (Michael Scherer)
- CVE Request -- redis: Two insecure temporary file use flaws (Kurt Seifried)
- Redis Homepage (Citrusbyte)