CVE-2013-2561
23.11.2013, 18:55
OpenFabrics ibutils 1.5.7 allows local users to overwrite arbitrary files via a symlink attack on (1) ibdiagnet.db, (2) ibdiagnet.fdbs, (3) ibdiagnet_ibis.log, (4) ibdiagnet.log, (5) ibdiagnet.lst, (6) ibdiagnet.mcfdbs, (7) ibdiagnet.pkey, (8) ibdiagnet.psl, (9) ibdiagnet.slvl, or (10) ibdiagnet.sm in /tmp/.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| redhat | enterprise_linux | 6.0 |
| openfabrics | ibutils | 1.5.7 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| ibutils |
|
Red Hat Enterprise Linux Releases
Red Hat Product | |||
|---|---|---|---|
| ibutils |
| ||
| ibutils-devel |
| ||
| ibutils-libs |
| ||
| infinipath-psm |
| ||
| infinipath-psm-devel |
| ||
| libibverbs |
| ||
| libibverbs-devel |
| ||
| libibverbs-devel-static |
| ||
| libibverbs-utils |
| ||
| libmlx4 |
| ||
| libmlx4-static |
| ||
| librdmacm |
| ||
| librdmacm-devel |
| ||
| librdmacm-static |
| ||
| librdmacm-utils |
| ||
| mpitests-mvapich |
| ||
| mpitests-mvapich-psm |
| ||
| mpitests-mvapich2 |
| ||
| mpitests-mvapich2-psm |
| ||
| mpitests-openmpi |
| ||
| mstflint |
| ||
| openmpi |
| ||
| openmpi-devel |
| ||
| perftest |
| ||
| qperf |
| ||
| rdma |
|
References