PT-2011-3896 · Oprofile · Oprofile
Huzaifa Sidhpurwala
·
Publicado
2011-06-09
·
Atualizado
2017-08-29
·
CVE-2011-2473
CVSS v2.0
6.3
Média
| Vetor | AV:L/AC:M/Au:N/C:N/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
OProfile versions 0.9.6 and earlier
Description
The issue is related to the do dump data function in utils/opcontrol, which might allow local users to create or overwrite arbitrary files. This can be achieved via a crafted --session-dir argument in conjunction with a symlink attack on the opd pipe file.
Recommendations
For OProfile versions 0.9.6 and earlier, consider restricting access to the do dump data function in utils/opcontrol until a patch is available. As a temporary workaround, avoid using the --session-dir argument with potentially crafted input to minimize the risk of exploitation.
Exploit
Correção
Link Following
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Oprofile