ISC INN Innfeed Config File Command Line Format String Vulnerability
BID:8510
Info
ISC INN Innfeed Config File Command Line Format String Vulnerability
| Bugtraq ID: | 8510 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 28 2003 12:00AM |
| Updated: | Mar 19 2015 08:29AM |
| Credit: | Discovery is credited to Rujinschi Remus <[email protected]>. |
| Vulnerable: |
ISC INN 2.0 |
| Not Vulnerable: | |
Discussion
ISC INN Innfeed Config File Command Line Format String Vulnerability
A format string vulnerability has been reported in ISC INN (InterNetNews). The issue exists in the innfeed binary and may be triggered by including format specifiers as an argument when specifying a config file via the command line. This could be exploited to by an attacker with a group ID of news to execute arbitrary code in the context of the program, which may allow the attacker to gain the user ID of news on some systems. Further privilege escalation may be possible if this issue is successfully exploited.
A format string vulnerability has been reported in ISC INN (InterNetNews). The issue exists in the innfeed binary and may be triggered by including format specifiers as an argument when specifying a config file via the command line. This could be exploited to by an attacker with a group ID of news to execute arbitrary code in the context of the program, which may allow the attacker to gain the user ID of news on some systems. Further privilege escalation may be possible if this issue is successfully exploited.
Exploit / POC
ISC INN Innfeed Config File Command Line Format String Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.