PT-2018-3575 · Keepalived+4 · Keepalived+4
Jsegitz
·
Published
2018-10-25
·
Updated
2024-06-15
·
CVE-2018-19044
CVSS v2.0
5.5
Medium
| Vector | AV:L/AC:H/Au:S/C:N/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
keepalived versions 2.0.8
Description
The issue is related to the implementation of PrintData or PrintStats calls in the Keepalived network traffic balancing system, which is associated with incorrect link resolution before accessing a file. This could allow an attacker to overwrite arbitrary files. Local users can exploit this to overwrite files if fs.protected symlinks is set to 0, for example, by creating a symlink from /tmp/keepalived.data or /tmp/keepalived.stats to /etc/passwd.
Recommendations
For keepalived version 2.0.8, consider setting fs.protected symlinks to 1 to prevent exploitation, and avoid using symlinks in temporary file paths for PrintData or PrintStats calls until a patch is available.
Exploit
Fix
Link Following
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Centos
Red Hat
Suse
Keepalived