Press CTRL-D to bookmark us
Welcome Guest Login / Register / Members
Search in  
Top Submit newsSubscribe
Communication | Computer Crime | Digital Audio, Video, Photo | General News | Hardware | Internet | Mobile | PDA | Security | Software | Vulnerability |


Previous articleBack to news listNext article
 

 Sponsored links

Want to become one of our authors and see your work published on ALLSeek.iNFO ?
 
 fcron 'fcronsighup' Bugs Let Local Users View and Delete Files
Categorie: Vulnerability
Posted: 2004-11-18 by ReCall
Views: 486
Source: Click here
 
Current Rating: Not rated
Poor Best
 Details
Description: iDEFENSE reported several vulnerabilities in fcron. A local user can view and delete arbitrary files on the target system. A local user can also supply an alternate configuration file.

It is reported that a local user can exploit the fcronsighup script to view arbitrary files with root privileges [CVE: CAN-2004-1030]. The local user can supply the file to be viewed as a parameter to fcronsighup, which will then attempt to parse the specified file as a configuration file. Lines that cannot be parsed will be displayed in an error message. A demonstration exploit command is provided:

fcronsighup /etc/shadow

It is also reported that a local user can direct the fcronsighup configuration file to a /proc entry owned by the 'root' user to supply arbitrary configuration settings to fcronsighup [CVE: CAN-2004-1031].

It is also reported that a local user can cause arbitrary files to be deleted [CVE CAN-2004-1032].

It is also reported that a local user can view the contents of the 'fcron.allow' and 'fcron.deny' files due to a file descriptor leak [CVE: CAN-2004-1033].

Karol Wiesek is credited with discovering these vulnerabilities.

The vendor was notified on October 21, 2004.

The original advisory is available at:

http://www.idefense.com/application/poi/display?id=157&type=vulnerabilities

Impact: A local user can view and delete arbitrary files on the target system.

A local user can supply an alternate configuration file.

Solution: The vendor has released a fixed version (2.0.2), available at:

http://fcron.free.fr/archives/fcron-2.0.2.src.tar.gz
ftp://ftp.seul.org/pub/fcron/fcron-2.0.2.src.tar.gz

A fixed development version (2.9.5.1) is also available at:

http://fcron.free.fr/archives/fcron-2.9.5.1.src.tar.gz
ftp://ftp.seul.org/pub/fcron/fcron-2.9.5.1.src. tar.gz
 
Syndication
Permalink Email this

The URI to TrackBack this entry is:
http://allseek.info/news/trackback.php?id=1089

User comments (post your comments here)

Only registerd members can post comments and articles
 

Previous articleBack to news listNext article
 



InterJOB.su

SpyLOG Page Rank Checker
LAST QUERIES