|
|
Util-linux Login Security Bypass Vulnerability
|
Bugtraq ID:
|
24321
|
|
Class:
|
Access Validation Error
|
|
CVE:
|
CVE-2006-7108
|
|
Remote:
|
Yes
|
|
Local:
|
No
|
|
Published:
|
Jun 05 2007 12:00AM
|
|
Updated:
|
Jul 03 2007 10:18PM
|
|
Credit:
|
Craig Lawson is credited with the discovery of this vulnerability.
|
|
Vulnerable:
|
util-linux util-linux 2.12 a
+
MandrakeSoft Linux Mandrake 10.2 x86_64
+
MandrakeSoft Linux Mandrake 10.2
+
MandrakeSoft Linux Mandrake 10.2
+
MandrakeSoft Linux Mandrake 10.1 x86_64
+
MandrakeSoft Linux Mandrake 10.1 x86_64
+
MandrakeSoft Linux Mandrake 10.1
+
MandrakeSoft Linux Mandrake 10.1
+
RedHat Desktop 4.0
+
RedHat Enterprise Linux AS 4
+
RedHat Enterprise Linux ES 4
+
RedHat Enterprise Linux WS 4
util-linux util-linux 2.12
+
MandrakeSoft Corporate Server 3.0 x86_64
+
MandrakeSoft Corporate Server 3.0
+
MandrakeSoft Linux Mandrake 10.0 AMD64
+
MandrakeSoft Linux Mandrake 10.0
+
MandrakeSoft Multi Network Firewall 2.0
+
Ubuntu Ubuntu Linux 4.1 ppc
+
Ubuntu Ubuntu Linux 4.1 ia64
+
Ubuntu Ubuntu Linux 4.1 ia32
util-linux util-linux 2.11 z
util-linux util-linux 2.11 u
+
MandrakeSoft Corporate Server 2.1 x86_64
+
MandrakeSoft Corporate Server 2.1
util-linux util-linux 2.11 r
util-linux util-linux 2.11 n
util-linux util-linux 2.11
util-linux util-linux 2.10
util-linux util-linux 2.9
util-linux util-linux 2.8
rPath rPath Linux 1
RedHat Enterprise Linux WS 4
RedHat Enterprise Linux ES 4
RedHat Enterprise Linux AS 4
RedHat Desktop 4.0
MandrakeSoft Linux Mandrake 2007.1 x86_64
MandrakeSoft Linux Mandrake 2007.1
MandrakeSoft Linux Mandrake 2007.0 x86_64
MandrakeSoft Linux Mandrake 2007.0
MandrakeSoft Corporate Server 4.0 x86_64
MandrakeSoft Corporate Server 3.0 x86_64
MandrakeSoft Corporate Server 3.0
MandrakeSoft Corporate Server 4.0
Avaya SES 3.1.1
Avaya SES 3.0
Avaya SES 2.0
Avaya Messaging Storage Server MSS 3.0
Avaya Message Networking MN 3.1
Avaya Message Networking
Avaya Communication Manager 2.0.1
+
Avaya Communication Manager Server DEFINITY Server SI/CS
+
Avaya Communication Manager Server S8100
+
Avaya Communication Manager Server S8100
+
Avaya Communication Manager Server S8300
+
Avaya Communication Manager Server S8300
+
Avaya Communication Manager Server S8500
+
Avaya Communication Manager Server S8500
+
Avaya Communication Manager Server S8700
+
Avaya Communication Manager Server S8700
Avaya Communication Manager 2.0
+
Avaya Communication Manager Server DEFINITY Server SI/CS
+
Avaya Communication Manager Server S8100
+
Avaya Communication Manager Server S8100
+
Avaya Communication Manager Server S8300
+
Avaya Communication Manager Server S8300
+
Avaya Communication Manager Server S8500
+
Avaya Communication Manager Server S8500
+
Avaya Communication Manager Server S8700
+
Avaya Communication Manager Server S8700
Avaya Communication Manager 4.0
Avaya Communication Manager 3.1
+
Avaya Communication Manager Server DEFINITY Server SI/CS
+
Avaya Communication Manager Server S8100
+
Avaya Communication Manager Server S8300
+
Avaya Communication Manager Server S8500
+
Avaya Communication Manager Server S8700
Avaya Communication Manager 3.0
+
Avaya Communication Manager Server DEFINITY Server SI/CS
+
Avaya Communication Manager Server S8100
+
Avaya Communication Manager Server S8100
+
Avaya Communication Manager Server S8300
+
Avaya Communication Manager Server S8300
+
Avaya Communication Manager Server S8500
+
Avaya Communication Manager Server S8500
+
Avaya Communication Manager Server S8700
+
Avaya Communication Manager Server S8700
Avaya CCS 3.1.1
Avaya CCS 3.0
Avaya CCS 2.0
Avaya AES 4.0
|
|
|
|
Not Vulnerable:
|
util-linux util-linux 2.13 -pre3
util-linux util-linux 2.13 -pre2
util-linux util-linux 2.13 -pre1
util-linux util-linux 2.12 r-pre1
util-linux util-linux 2.12 r
util-linux util-linux 2.12 q
util-linux util-linux 2.12 p
+
Debian Linux 3.1 sparc
+
Debian Linux 3.1 s/390
+
Debian Linux 3.1 ppc
+
Debian Linux 3.1 mipsel
+
Debian Linux 3.1 mips
+
Debian Linux 3.1 m68k
+
Debian Linux 3.1 ia-64
+
Debian Linux 3.1 ia-32
+
Debian Linux 3.1 hppa
+
Debian Linux 3.1 arm
+
Debian Linux 3.1 amd64
+
Debian Linux 3.1 alpha
+
Debian Linux 3.1
+
Ubuntu Ubuntu Linux 5.0 4 powerpc
+
Ubuntu Ubuntu Linux 5.0 4 i386
+
Ubuntu Ubuntu Linux 5.0 4 amd64
util-linux util-linux 2.12 b
+
MandrakeSoft Linux Mandrake 10.2 x86_64
+
MandrakeSoft Linux Mandrake 10.2
+
MandrakeSoft Linux Mandrake 10.1 x86_64
+
MandrakeSoft Linux Mandrake 10.1
|
|

|