OSVDB ID: 20731

Title: NetBSD imake file.0 Target Insecure /tmp File Creation

Info

Disclosure

Oct 31, 2005

Discovery

Unknown

Dates

Exploit

Oct 31, 2005

Solution

Unknown

Description

NetBSD contains a flaw that may allow a malicious local user to overwrite arbitrary files on the system. The issue is due to the imake program creating Makefiles in the /tmp directory insecurely. It is possible for a user to use a symlink style attack to overwrite arbitrary files, resulting in a loss of integrity.

Classification

Location: Local Access Required
Attack Type: Race Condition
Impact: Loss of Integrity
Exploit: Exploit Public
Disclosure: OSVDB Verified

Solution

Upgrade to version 2.0.3 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.

Products

NetBSD Foundation, Inc.

NetBSD

1.6
1.6.x
2.0
2.0.1
2.0.2

References

Credit

  • Jeremy C. Reed -


Direct URL: http://osvdb.org/20731