vendor:
RTOS
by:
SecurityFocus
7,2
CVSS
HIGH
Local Privilege Escalation
264
CWE
Product Name: RTOS
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2002
QNX RTOS dumper Local Privilege Escalation Vulnerability
When creating memory dump files, the QNX RTOS debugging utility 'dumper' follows symbolic links. It also sets ownership of the file to the userid of the terminated process. It is possible for malicious local attackers to exploit this vulnerability to overwrite and gain ownership of arbitrary files. Consequently, attackers may elevate to root privileges by modifying files such as '/etc/passwd'.
Mitigation:
Restrict access to the dumper utility and ensure that it is not used by unprivileged users.