CVE-2021-33393
09.06.2021, 22:15
lfs/backup in IPFire 2.25-core155 does not ensure that /var/ipfire/backup/bin/backup.pl is owned by the root account. It might be owned by an unprivileged account, which could potentially be used to install a Trojan horse backup.pl script that is later executed by root. Similar problems with the ownership/permissions of other files may be present as well.Enginsight
Vendor | Product | Version |
---|---|---|
ipfire | ipfire | 𝑥 < 2.25 |
ipfire | ipfire | 2.25:core_update141 |
ipfire | ipfire | 2.25:core_update142 |
ipfire | ipfire | 2.25:core_update143 |
ipfire | ipfire | 2.25:core_update144 |
ipfire | ipfire | 2.25:core_update145 |
ipfire | ipfire | 2.25:core_update146 |
ipfire | ipfire | 2.25:core_update147 |
ipfire | ipfire | 2.25:core_update148 |
ipfire | ipfire | 2.25:core_update149 |
ipfire | ipfire | 2.25:core_update150 |
ipfire | ipfire | 2.25:core_update151 |
ipfire | ipfire | 2.25:core_update152 |
ipfire | ipfire | 2.25:core_update155 |
ipfire | ipfire | 2.25:core_update156 |
𝑥
= Vulnerable software versions
References