autofs nosuid Mount Option Local Privilege Escalation Vulnerability

Bugtraq ID: 26841
Class: Configuration Error
CVE: CVE-2007-5964
Remote: No
Local: Yes
Published: Dec 12 2007 12:00AM
Updated: Jan 14 2008 07:29PM
Credit: Josh Lange is credited with discovering this issue.
Vulnerable: RedHat Enterprise Linux WS 4
RedHat Enterprise Linux ES 4
RedHat Desktop 4.0
Red Hat Fedora 8
Red Hat Fedora 7
Red Hat Enterprise Linux Desktop 5 client
Red Hat Enterprise Linux AS 4
Red Hat Enterprise Linux 5 Server
Red Hat autofs5 5.0.1
Mandriva Linux Mandrake 2008.0 x86_64
Mandriva Linux Mandrake 2008.0
Mandriva Linux Mandrake 2007.1 x86_64
Mandriva Linux Mandrake 2007.1
Mandriva Linux Mandrake 2007.0 x86_64
Mandriva Linux Mandrake 2007.0
Not Vulnerable:


 

Privacy Statement
Copyright 2010, SecurityFocus