Gentoo Archives: gentoo-announce

From: Thierry Carrez <koon@g.o>
To: gentoo-announce@l.g.o
Cc: bugtraq@×××××××××××××.com, full-disclosure@××××××××××××.com, security-alerts@×××××××××××××.com
Subject: [gentoo-announce] [ GLSA 200407-07 ] Shorewall : Insecure temp file handling
Date: Thu, 08 Jul 2004 17:26:01
Message-Id: 40ED8363.2000702@gentoo.org
1 -----BEGIN PGP SIGNED MESSAGE-----
2 Hash: SHA1
3
4 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
5 Gentoo Linux Security Advisory GLSA 200407-07
6 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
7 http://security.gentoo.org/
8 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
9
10 Severity: Normal
11 Title: Shorewall : Insecure temp file handling
12 Date: July 08, 2004
13 Bugs: #55675
14 ID: 200407-07
15
16 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
17
18 Synopsis
19 ========
20
21 Shorewall contains a bug in the code handling the creation of temporary
22 files and directories. This can allow a non-root user to overwrite
23 arbitrary system files.
24
25 Background
26 ==========
27
28 Shorewall is a high level tool for configuring Netfilter, the firewall
29 facility included in the Linux Kernel.
30
31 Affected packages
32 =================
33
34 -------------------------------------------------------------------
35 Package / Vulnerable / Unaffected
36 -------------------------------------------------------------------
37 1 net-firewall/shorewall <= 1.4.10c >= 1.4.10f
38
39 Description
40 ===========
41
42 Shorewall uses temporary files and directories in an insecure manner. A
43 local user could create symbolic links at specific locations,
44 eventually overwriting other files on the filesystem with the rights of
45 the shorewall process.
46
47 Impact
48 ======
49
50 An attacker could exploit this vulnerability to overwrite arbitrary
51 system files with root privileges, resulting in Denial of Service or
52 further exploitation.
53
54 Workaround
55 ==========
56
57 There is no known workaround at this time. All users should upgrade to
58 the latest available version of Shorewall.
59
60 Resolution
61 ==========
62
63 All users should upgrade to the latest available version of Shorewall,
64 as follows:
65
66 # emerge sync
67
68 # emerge -pv ">=net-firewall/shorewall-1.4.10f"
69 # emerge ">=net-firewall/shorewall-1.4.10f"
70
71 References
72 ==========
73
74 [ 1 ] Shorewall Announcement
75
76 http://lists.shorewall.net/pipermail/shorewall-announce/2004-June/000385.html
77
78 Availability
79 ============
80
81 This GLSA and any updates to it are available for viewing at
82 the Gentoo Security Website:
83
84 http://security.gentoo.org/glsa/glsa-200407-07.xml
85
86 Concerns?
87 =========
88
89 Security is a primary focus of Gentoo Linux and ensuring the
90 confidentiality and security of our users machines is of utmost
91 importance to us. Any security concerns should be addressed to
92 security@g.o or alternatively, you may file a bug at
93 http://bugs.gentoo.org.
94
95 License
96 =======
97
98 Copyright 2004 Gentoo Foundation, Inc; referenced text
99 belongs to its owner(s).
100
101 The contents of this document are licensed under the
102 Creative Commons - Attribution / Share Alike license.
103
104 http://creativecommons.org/licenses/by-sa/1.0
105
106 -----BEGIN PGP SIGNATURE-----
107 Version: GnuPG v1.2.4 (GNU/Linux)
108 Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org
109
110 iD8DBQFA7YNjvcL1obalX08RAnEoAJwI4WXLMFQHLKej/GoiwfvMilgfwgCeLcQE
111 eqXoYzwnpkLAnbmAjw5JLho=
112 =1nyP
113 -----END PGP SIGNATURE-----