PT-2020-6172 · Clusterlabs+3 · Crmsh+3

Vincent Berg

·

Published

2020-12-14

·

Updated

2024-06-15

·

CVE-2020-35459

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ClusterLabs crmsh versions 4.2.1 and earlier
Description The issue allows local attackers to execute commands via shell code injection to the crm history command line, potentially allowing escalation of privileges. This is related to a lack of privilege management mechanism in the cluster management shell. Exploitation of the issue could allow an attacker to access confidential data, compromise its integrity, and cause a denial of service.
Recommendations For versions 4.2.1 and earlier, as a temporary workaround, consider restricting access to the crm history command until a patch is available. Avoid using the crm history command with untrusted input to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Privilege Management

OS Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2021-03413
CVE-2020-35459
DLA-2533-1
GHSA-99XX-83JM-H24M
OPENSUSE-SU-2021:0055-1
OPENSUSE-SU-2021:0073-1
OPENSUSE-SU-2021:0410-1
OPENSUSE-SU-2021:0473-1
OPENSUSE-SU-2021:1087-1
OPENSUSE-SU-2021:2435-1
OPENSUSE-SU-2021_0055-1
OPENSUSE-SU-2021_0073-1
OPENSUSE-SU-2021_0410-1
OPENSUSE-SU-2021_0473-1
OPENSUSE-SU-2021_1087-1
OPENSUSE-SU-2021_2435-1
OPENSUSE-SU-2024:10700-1
OPENSUSE-SU-2024:12952-1
SUSE-SU-2021:0083-1
SUSE-SU-2021:0084-1
SUSE-SU-2021:0085-1
SUSE-SU-2021:0086-1
SUSE-SU-2021:0087-1
SUSE-SU-2021:0722-1
SUSE-SU-2021:0771-1
SUSE-SU-2021:0781-1
SUSE-SU-2021:0782-1
SUSE-SU-2021:0806-1
SUSE-SU-2021:0941-1
SUSE-SU-2021:0942-1
SUSE-SU-2021:0943-1
SUSE-SU-2021:2238-1
SUSE-SU-2021:2239-1
SUSE-SU-2021:2435-1
SUSE-SU-2021:3121-1
SUSE-SU-2021_0083-1
SUSE-SU-2021_0084-1
SUSE-SU-2021_0085-1
SUSE-SU-2021_0086-1
SUSE-SU-2021_0087-1
SUSE-SU-2021_0722-1
SUSE-SU-2021_0771-1
SUSE-SU-2021_0781-1
SUSE-SU-2021_0782-1
SUSE-SU-2021_0806-1
SUSE-SU-2021_0941-1
SUSE-SU-2021_0942-1
SUSE-SU-2021_0943-1
SUSE-SU-2021_2238-1
SUSE-SU-2021_2239-1
SUSE-SU-2021_2435-1
SUSE-SU-2021_3121-1
USN-6711-1

Affected Products

Linuxmint
Suse
Ubuntu
Crmsh