PT-2011-3896 · Oprofile · Oprofile

Huzaifa Sidhpurwala

·

Published

2011-06-09

·

Updated

2017-08-29

·

CVE-2011-2473

CVSS v2.0

6.3

Medium

VectorAV:L/AC:M/Au:N/C:N/I:C/A:C
Name of the Vulnerable Software and Affected Versions OProfile versions 0.9.6 and earlier
Description The issue is related to the do dump data function in utils/opcontrol, which might allow local users to create or overwrite arbitrary files. This can be achieved via a crafted --session-dir argument in conjunction with a symlink attack on the opd pipe file.
Recommendations For OProfile versions 0.9.6 and earlier, consider restricting access to the do dump data function in utils/opcontrol until a patch is available. As a temporary workaround, avoid using the --session-dir argument with potentially crafted input to minimize the risk of exploitation.

Exploit

Fix

Link Following

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2011-2473

Affected Products

Oprofile