|| Hotline : 800 2378 ||  To contact CERT-MU send e-mail on --> info[at]cert-mu.gov.mu ||  To report incident e-mail on --> incident[at]cert-mu.gov.mu || To report Vulnerabilities send e-mail on --> Vulnerability[at]cert-mu.gov.mu ||
    Constituency
    Authority
    Vol. 2, Feb 2012
    Vol. 1, Oct 2011
    World CERTs
    Email Abuse
 
 
Authorized to use CERT(TM) - CERT is a mark owned by Carnegie Mellon University
 
 
 
 
 
 
 
 
 
 
 
 


   
 

CERT-MU Vulnerability Note VN-2008-11

Linux Kernel 'truncate()' Local Privilege Escalation Vulnerability

Original Issue Date: October 31, 2008

Severity Rating: High

Systems Affected

  • Linux kernel versions prior to 2.6.22-rc1

Overview

A vulnerability has been reported in Linux Kernel which allows a local attacker to gain elevated privileges on the system caused by an error in open.c

Description

The vulnerability exists because, the "truncate()" and "ftruncate()" functions are not appropriately clearing the "suid" and "sgid" bits from files modified .An attacker could exploit this vulnerability by creating an executable file in a setgid directory using the truncate or ftruncate function in conjunction with memory-mapped I/O to gain the privileges of a different group, and hence launch further attacks.

Solution

Disclaimer

The information provided herein is on "as is" basis, without warranty of any kind.

Vendor Information

kernel.org

http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.22


CVE-Name


CVE-2008-4210

References

IBM ISS X-force
http://xforce.iss.net/xforce/xfdb/45539

SecurityFocus
http://www.securityfocus.com/bid/31368

 
 
News & Events
Safer Internet Day 2012
Computer Security Day 2011
Workshop on Cloud Security
Workshop on Mobile Security
Certificate Award Ceremony for Trainings in Information Security Management

  more...
 
Virus Alerts
RSS Feed
 
 
 

Last Updated 20-Jul-2011
Disclaimer Maintained & Hosted by NCB
This site is best viewed in 1024 x 768 resolution. Internet Explorer 6.0 +

10-Jul-2011