PT-2018-3552 · Systemd+2 · Systemd+2

Michael Orlitzky

·

Publicado

2018-01-29

·

Atualizado

2024-06-15

·

CVE-2017-18078

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: systemd versions prior to 237
Description: The issue is related to incorrect link resolution before file access in the systemd-tmpfiles daemon, allowing an attacker to bypass existing access restrictions and potentially disclose protected information. This can occur when the fs.protected hardlinks setting is disabled by an administrator and an attacker creates hard links to sensitive files. Local users can exploit this to change ownership or permissions of files they normally cannot access, such as the /etc/passwd file.
Recommendations: For versions prior to 237, update to version 237 or later to resolve the issue. As a temporary workaround, consider enabling the fs.protected hardlinks sysctl to prevent the creation of hard links to sensitive files.

Exploit

Correção

Link Following

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2018-1110
BDU:2020-04524
CVE-2017-18078
DLA-1762-1
DLA-1762-2
OPENSUSE-SU-2024:11420-1
SUSE-SU-2018:0546-1
SUSE-SU-2018_0546-1

Produtos afetados

Alt Linux
Suse
Systemd