Firewall Builder 3.0.4, 3.0.5, and 3.0.6, when running on Linux, allows local users to gain privileges via a symlink attack on an unspecified temporary file that is created by the iptables script.
The product attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Firewall_builder | Fwbuilder | 3.0.4 (including) | 3.0.4 (including) |
Firewall_builder | Fwbuilder | 3.0.5 (including) | 3.0.5 (including) |
Firewall_builder | Fwbuilder | 3.0.6 (including) | 3.0.6 (including) |
Fwbuilder | Ubuntu | dapper | * |
Fwbuilder | Ubuntu | hardy | * |
Fwbuilder | Ubuntu | intrepid | * |
Fwbuilder | Ubuntu | jaunty | * |
Fwbuilder | Ubuntu | karmic | * |
Fwbuilder | Ubuntu | upstream | * |