CENTER.HU groups
CENTER.HU address

User:

Guest

www.center.hu / Archive / Security news / november, 2004 / Red Hat redhat-config-nfs package incorrect permissions vulnerability 

Red Hat redhat-config-nfs package incorrect permissions vuln

Red Hat redhat-config-nfs package incorrect permissions vuln

Date Discovered: September 22, 2004
Date Published: November 3, 2004
Last Updated: November 3, 2004

Vulnerability Description

Vulnerability ID:          31662
Discovered by:            John Buswell
Exploitable Locally:     Yes
Exploitable Remotely: No
Impact:                        Attackers can gain escalated privileges.
Root Cause:                 Software Vulnerability

Red Hat’s redhat-config-nfs package contains a vulnerability that can allow attackers to gain escalated privileges. The vulnerability occurs when shares are exported to multiple hosts and can cause the all_squash option to not be applied to the listed hosts. This could lead to incorrect permissions being set on exported shares. Attackers can exploit this vulnerability to gain escalated privileges.

 

 

More information on CA Vulnerability Information Center
http://www3.ca.com/securityadvisor/vulninfo/vuln.aspx?id=31662

Computer Associates – the Trusted Source of Security Knowledge

 

Back




Copyright © CENTER.HU Ltd, 2000-2010. All rights reserved

sitemap | privacy policy |

copyrights | new pages |

terms of purchase | contact us


PARTNERS: Computerworld.hu | GameStar.hu | PCWorld.hu | SG.hu | PC Guru | Hitel