vendor:
RXcscope
by:
Gangstuck / Psirac
7.5
CVSS
HIGH
RXcscope exploit version 15.5 and minor
CWE
Product Name: RXcscope
Affected Version From: 15.5
Affected Version To: 15.5
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2004
RXcscope Exploit
This exploit targets the RXcscope version 15.5 and minor. It allows an attacker to create symlinks with arbitrary names to a specified target file. The exploit takes two command line arguments: the target file and the maximum number of file creations. It then creates symlinks with names in the format cscope<process_id>.<iteration_number> in the temporary directory. The process IDs start from the current process ID and go up to the specified maximum process ID. The iteration number starts from 0 and increases by 1 for each symlink created. This exploit can be used to perform a denial of service attack by exhausting the file system with a large number of symlinks.
Mitigation:
Upgrade to a version of RXcscope that is not affected by this exploit.