FreeBSD AIDE Port默认配置文件漏洞

漏洞信息详情

FreeBSD AIDE Port默认配置文件漏洞

漏洞简介

基于2002年8月28日之前的FreeBSD的Advanced Intrusion Detection Environment (AIDE)0.7_1之前版本的默认aide.conf文件不能正确检查子目录。本地用户利用该漏洞绕过检测。

漏洞公告

FreeBSD has released a Security Notice FreeBSD-SN-02:05. Users of FreeBSD systems are strongly urged to upgrade their ports tree to fix various reported issues. Further information can be found in the referenced Security Notice.

参考网址

来源: BID
名称: 5588
链接:http://www.securityfocus.com/bid/5588

来源: XF
名称: aide-conf-bypass-detection(10015)
链接:http://www.iss.net/security_center/static/10015.php

来源: FREEBSD
名称: FreeBSD-SN-02:05
链接:ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SN-02:05.asc

受影响实体

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享