Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Simon Fayer

Pesquisador deImperial College London
#39479de 53,633
6.9CVSS total
Vulnerabilidades · 1
PT-2013-3499
6.9
2013-05-28
Apache · Apache Tomcat · CVE-2013-1976
**Name of the Vulnerable Software and Affected Versions** Tomcat versions in JBoss Enterprise Web Server 1.0.2 and 2.0.0 Tomcat versions in Red Hat Enterprise Linux 5 and 6 **Description** The issue allows local users to change the ownership of arbitrary files via a symlink attack on log files, including `tomcat5-initd.log`, `tomcat6-initd.log`, `catalina.out`, or `tomcat7-initd.log`. **Recommendations** For Tomcat versions in JBoss Enterprise Web Server 1.0.2 and 2.0.0, consider restricting access to the log files to prevent symlink attacks. For Tomcat versions in Red Hat Enterprise Linux 5 and 6, restrict access to the log files to minimize the risk of exploitation. As a temporary workaround, consider setting the log files to immutable to prevent changes until a patch is available.