PT-2003-2030 · Oracle · Solaris
Wojciech Purczynski
·
Publicado
2003-12-31
·
Atualizado
2018-10-30
·
CVE-2003-1073
CVSS v2.0
1.2
Baixa
| Vetor | AV:L/AC:H/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Solaris versions 2.6 through 9
Description
A race condition exists in the
at command, allowing local users to delete arbitrary files by utilizing the -r argument with .. (dot dot) sequences in the job name. This is achieved by modifying the directory structure after the at command checks permissions to delete the file, but before the deletion actually takes place.Recommendations
For Solaris versions 2.6 through 9, consider restricting access to the
at command until a fix is available, or apply configuration changes to prevent the exploitation of this issue. As a temporary workaround, consider disabling the at command for local users to minimize the risk of exploitation.Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Solaris