PT-2012-4713 · Todd Miller+1 · Sudo+1

Tomas Hoger

·

Publicado

2012-08-07

·

Atualizado

2023-02-13

·

CVE-2012-3440

CVSS v2.0

5.6

Média

VetorAV:L/AC:H/Au:N/C:N/I:C/A:C
Name of the Vulnerable Software and Affected Versions Red Hat Enterprise Linux (RHEL) 5 with sudo version 1.7.2
Description The issue allows local users to overwrite arbitrary files via a symlink attack on the /var/tmp/nsswitch.conf.bak temporary file. This is related to a certain Red Hat script for sudo.
Recommendations For Red Hat Enterprise Linux (RHEL) 5 with sudo version 1.7.2, consider restricting access to the temporary file /var/tmp/nsswitch.conf.bak to prevent symlink attacks until a patch is available. As a temporary workaround, avoid using the Red Hat script for sudo that utilizes this temporary file.

Exploit

Correção

Link Following

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2012-3440
RHSA-2012:1149
RHSA-2012_1149

Produtos afetados

Red Hat
Sudo