PT-2003-2030 · Oracle · Solaris

Wojciech Purczynski

·

Publicado

2003-12-31

·

Atualizado

2018-10-30

·

CVE-2003-1073

CVSS v2.0

1.2

Baixa

VetorAV:L/AC:H/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Solaris versions 2.6 through 9
Description A race condition exists in the at command, allowing local users to delete arbitrary files by utilizing the -r argument with .. (dot dot) sequences in the job name. This is achieved by modifying the directory structure after the at command checks permissions to delete the file, but before the deletion actually takes place.
Recommendations For Solaris versions 2.6 through 9, consider restricting access to the at command until a fix is available, or apply configuration changes to prevent the exploitation of this issue. As a temporary workaround, consider disabling the at command for local users to minimize the risk of exploitation.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2003-1073

Produtos afetados

Solaris