PT-2012-4713 · Todd Miller+1 · Sudo+1
Tomas Hoger
·
Publicado
2012-08-07
·
Atualizado
2023-02-13
·
CVE-2012-3440
CVSS v2.0
5.6
Média
| Vetor | AV:L/AC:H/Au:N/C:N/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Red Hat Enterprise Linux (RHEL) 5 with sudo version 1.7.2
Description
The issue allows local users to overwrite arbitrary files via a symlink attack on the /var/tmp/nsswitch.conf.bak temporary file. This is related to a certain Red Hat script for sudo.
Recommendations
For Red Hat Enterprise Linux (RHEL) 5 with sudo version 1.7.2, consider restricting access to the temporary file /var/tmp/nsswitch.conf.bak to prevent symlink attacks until a patch is available. As a temporary workaround, avoid using the Red Hat script for sudo that utilizes this temporary file.
Exploit
Correção
Link Following
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Red Hat
Sudo