GNU C Library addmntent函数文件破坏漏洞

漏洞信息详情

GNU C Library addmntent函数文件破坏漏洞

漏洞简介

glibc(又名GNU C Library,libc6)是一种按照LGPL许可协议发布的开源免费的C语言编译程序。

GNU C Library(glibc或者libc6)2.13及之前版本中的addmntent函数没有进行错误状态报告,该错误状态由向/etc/mtab文件写入的失败尝试引起的。本地用户更容易利用该漏洞触发此文件的破坏。

漏洞公告

目前厂商已经发布了升级补丁以修复此安全问题,补丁获取链接:

http://sourceware.org/bugzilla/show_bug.cgi?id=12625

参考网址

来源: bugzilla.redhat.com

链接:https://bugzilla.redhat.com/show_bug.cgi?id=688980

来源: BID

名称: 46740

链接:http://www.securityfocus.com/bid/46740

来源: sourceware.org

链接:http://sourceware.org/bugzilla/show_bug.cgi?id=12625

来源: MLIST

名称: [oss-security] 20110401 Re: Suid mount helpers fail to anticipate RLIMIT_FSIZE

链接:http://openwall.com/lists/oss-security/2011/04/01/2

来源: MLIST

名称: [oss-security] 20110331 Re: Suid mount helpers fail to anticipate RLIMIT_FSIZE

链接:http://openwall.com/lists/oss-security/2011/03/31/4

来源: MLIST

名称: [oss-security] 20110331 Re: Suid mount helpers fail to anticipate RLIMIT_FSIZE

链接:http://openwall.com/lists/oss-security/2011/03/31/3

来源: MLIST

名称: [oss-security] 20110322 Re: Suid mount helpers fail to anticipate RLIMIT_FSIZE

链接:http://openwall.com/lists/oss-security/2011/03/22/6

来源: MLIST

名称: [oss-security] 20110322 Re: Suid mount helpers fail to anticipate RLIMIT_FSIZE

链接:http://openwall.com/lists/oss-security/2011/03/22/4

来源: MLIST

名称: [oss-security] 20110315 Re: Suid mount helpers fail to anticipate RLIMIT_FSIZE

链接:http://openwall.com/lists/oss-security/2011/03/15/6

来源: MLIST

名称: [oss-security] 20110314 Re: Suid mount helpers fail to anticipate RLIMIT_FSIZE

链接:http://openwall.com/lists/oss-security/2011/03/14/7

来源: MLIST

名称: [oss-security] 20110314 Re: Suid mount helpers fail to anticipate RLIMIT_FSIZE

链接:http://openwall.com/lists/oss-security/2011/03/14/5

来源: MLIST

名称: [oss-security] 20110314 Re: Suid mount helpers fail to anticipate RLIMIT_FSIZE

链接:http://openwall.com/lists/oss-security/2011/03/14/16

来源: MLIST

名称: [oss-security] 20110307 Re: Suid mount helpers fail to anticipate RLIMIT_FSIZE

链接:http://openwall.com/lists/oss-security/2011/03/07/9

来源: MLIST

名称: [oss-security] 20110305 Re: Suid mount helpers fail to anticipate RLIMIT_FSIZE

链接:http://openwall.com/lists/oss-security/2011/03/05/7

来源: MLIST

名称: [oss-security] 20110305 Re: Suid mount helpers fail to anticipate RLIMIT_FSIZE

链接:http://openwall.com/lists/oss-security/2011/03/05/3

来源: MLIST

名称: [oss-security] 20110303 Suid mount helpers fail to anticipate RLIMIT_FSIZE

链接:http://openwall.com/lists/oss-security/2011/03/04/9

来源: MLIST

名称: [oss-security] 20110304 Re: Suid mount helpers fail to anticipate RLIMIT_FSIZE

链接:http://openwall.com/lists/oss-security/2011/03/04/12

来源: MLIST

名称: [oss-security] 20110303 Re: Suid mount helpers fail to anticipate RLIMIT_FSIZE

链接:http://openwall.com/lists/oss-security/2011/03/04/11

来源: MLIST

名称: [oss-security] 20110304 Re: Suid mount helpers fail to anticipate RLIMIT_FSIZE

链接:http://openwall.com/lists/oss-security/2011/03/04/10

来源:NSFOCUS
名称:18711
链接:http://www.nsfocus.net/vulndb/18711

来源:NSFOCUS
名称:20805
链接:http://www.nsfocus.net/vulndb/20805

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享