May 22, 2012, 10:00:03 PM *
Welcome, Guest. Please login or register.

Login with username, password and session length
News: THC is up and running !
 

 
advertisement:

Pages: [1]
  Print  
Author Topic: RSS: USN985-1 : mountall vulnerability  (Read 61 times)
zomgwtfbbq
Challenge Coder
Administrator
Hero Member
*****

Karma: +31340/-1
Posts: I am a geek!!


thc title: thc elite
thc points: 3315
challenges: (69/83)

View Profile
« on: September 09, 2010, 06:10:38 PM »
Share on FacebookFacebook Share

USN985-1 : mountall vulnerability

Synopsis :

The remote package "mountall" is missing a security patch.

Description :

Alasdair MacGregor discovered that mountall created a udev rule file
with world-writable permissions. A local attacker could exploit this
under certain conditions to cause udev to execute arbitrary commands as
the root user.

Solution :

Upgrade to :
- mountall-2.15.2 (Ubuntu 10.04)

Risk factor :

High


original thread:
only registered users with at least 25 hack challenge points can see links:
click here in order to visit the hack challenges
http://www.nessus.org/plugins/index.php?view=single&id=49171
Logged


only registered users with at least 25 hack challenge points can see links:
  click here in order to visit the hack challenges


Ook al ben ik een slet toch houdt ik van je..
Pages: [1]
  Print  
 
Jump to:  


SMF Board hacked and modded by zomgwtfbekjam aka Rembo from Tools & Design