Vulnerabilities > CVE-2002-0658 - Privilege Escalation vulnerability in MM Shared Memory Library Temporary File

047910
CVSS 6.2 - MEDIUM
Attack vector
LOCAL
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
high complexity
ossp
nessus
exploit available

Summary

OSSP mm library (libmm) before 1.2.0 allows the local Apache user to gain privileges via temporary files, possibly via a symbolic link attack.

Exploit-Db

descriptionMM 1.0.x/1.1.x Shared Memory Library Temporary File Privilege Escalation Vulnerability. CVE-2002-0658. Local exploit for linux platform
idEDB-ID:21667
last seen2016-02-02
modified2002-07-29
published2002-07-29
reporterSebastian Krahmer
sourcehttps://www.exploit-db.com/download/21667/
titleMM 1.0.x/1.1.x - Shared Memory Library Temporary File Privilege Escalation Vulnerability

Nessus

  • NASL familyHP-UX Local Security Checks
    NASL idHPUX_PHSS_27263.NASL
    descriptions700_800 11.04 Virtualvault 4.6 OpenSSH Update : Remotely exploitable potential vulnerabilities have been reported in CA-2002-21 and CVE-2002-0658.
    last seen2020-06-01
    modified2020-06-02
    plugin id16849
    published2005-02-16
    reporterThis script is Copyright (C) 2005-2013 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/16849
    titleHP-UX PHSS_27263 : HPSBUX0209-217 Sec. Vulnerability in Apache OpenSSL (rev.2)
  • NASL familyHP-UX Local Security Checks
    NASL idHPUX_PHSS_27656.NASL
    descriptions700_800 11.04 Webproxy server 2.0 update : Remotely exploitable potential vulnerabilities have been reported in CA-2002-21 and CVE-2002-0658.
    last seen2020-06-01
    modified2020-06-02
    plugin id17484
    published2005-03-18
    reporterThis script is Copyright (C) 2005-2013 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/17484
    titleHP-UX PHSS_27656 : HPSBUX0209-217 Sec. Vulnerability in Apache OpenSSL (rev.2)
  • NASL familySlackware Local Security Checks
    NASL idSLACKWARE_18706.NASL
    descriptionSeveral security updates are now available for Slackware 8.1, including updated packages for Apache, glibc, mod_ssl, openssh, openssl, and php.
    last seen2016-09-26
    modified2013-01-25
    plugin id18706
    published2005-07-13
    reporterTenable
    sourcehttps://www.tenable.com/plugins/index.php?view=single&id=18706
    titleSSA-18706 Security updates for Slackware 8.1
  • NASL familyHP-UX Local Security Checks
    NASL idHPUX_PHSS_27423.NASL
    descriptions700_800 11.04 Virtualvault 4.6 Inside Server Update : The remote HP-UX host is affected by multiple vulnerabilities : - Remotely exploitable potential vulnerabilities have been reported in CA-2002-21 and CVE-2002-0658. - A potential remotely exploitable vulnerability in handling of large data chunks in Apache-based web servers. (HPSBUX00197 SSRT2332)
    last seen2020-06-01
    modified2020-06-02
    plugin id17477
    published2005-03-18
    reporterThis script is Copyright (C) 2005-2013 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/17477
    titleHP-UX PHSS_27423 : s700_800 11.04 Virtualvault 4.6 Inside Server Update
  • NASL familyHP-UX Local Security Checks
    NASL idHPUX_PHSS_27476.NASL
    descriptions700_800 11.04 Virtualvault 4.6 inside server support : The remote HP-UX host is affected by multiple vulnerabilities : - Potential vulnerability in Apache web servers while handling SSL requests. - Remotely exploitable potential vulnerabilities have been reported in CA-2002-21 and CVE-2002-0658.
    last seen2020-06-01
    modified2020-06-02
    plugin id16808
    published2005-02-16
    reporterThis script is Copyright (C) 2005-2013 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/16808
    titleHP-UX PHSS_27476 : s700_800 11.04 Virtualvault 4.6 inside server support
  • NASL familyHP-UX Local Security Checks
    NASL idHPUX_PHSS_27655.NASL
    descriptions700_800 11.04 HP Praesidium Webproxy 1.0 server update : Remotely exploitable potential vulnerabilities have been reported in CA-2002-21 and CVE-2002-0658.
    last seen2020-06-01
    modified2020-06-02
    plugin id17483
    published2005-03-18
    reporterThis script is Copyright (C) 2005-2013 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/17483
    titleHP-UX PHSS_27655 : HPSBUX0209-217 Sec. Vulnerability in Apache OpenSSL (rev.2)
  • NASL familyHP-UX Local Security Checks
    NASL idHPUX_PHSS_27637.NASL
    descriptions700_800 11.04 Virtualvault 4.6 TGP IP Aliasing fix : Remotely exploitable potential vulnerabilities have been reported in CA-2002-21 and CVE-2002-0658.
    last seen2020-06-01
    modified2020-06-02
    plugin id17481
    published2005-03-18
    reporterThis script is Copyright (C) 2005-2013 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/17481
    titleHP-UX PHSS_27637 : HPSBUX0209-217 Sec. Vulnerability in Apache OpenSSL (rev.2)
  • NASL familyDebian Local Security Checks
    NASL idDEBIAN_DSA-137.NASL
    descriptionMarcus Meissner and Sebastian Krahmer discovered and fixed a temporary file vulnerability in the mm shared memory library. This problem can be exploited to gain root access to a machine running Apache which is linked against this library, if shell access to the user
    last seen2020-06-01
    modified2020-06-02
    plugin id14974
    published2004-09-29
    reporterThis script is Copyright (C) 2004-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/14974
    titleDebian DSA-137-1 : mm - insecure temporary files
  • NASL familyHP-UX Local Security Checks
    NASL idHPUX_PHSS_27477.NASL
    descriptions700_800 11.04 Virtualvault 4.5 Inside Admin Server Update : The remote HP-UX host is affected by multiple vulnerabilities : - Remotely exploitable potential vulnerabilities have been reported in CA-2002-21 and CVE-2002-0658. - A potential remotely exploitable vulnerability in handling of large data chunks in Apache-based web servers. (HPSBUX00197 SSRT2332)
    last seen2020-06-01
    modified2020-06-02
    plugin id16807
    published2005-02-16
    reporterThis script is Copyright (C) 2005-2013 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/16807
    titleHP-UX PHSS_27477 : s700_800 11.04 Virtualvault 4.5 Inside Admin Server Update
  • NASL familyRed Hat Local Security Checks
    NASL idREDHAT-RHSA-2002-154.NASL
    descriptionUpdated mm packages are now available for Red Hat Linux Advanced Server. This update addresses possible vulnerabilities in how the MM library opens temporary files. The MM library provides an abstraction layer which allows related processes to easily share data. On systems where shared memory or other inter-process communication mechanisms are not available, the MM library will emulate them using temporary files. MM is used in Red Hat Linux to providing shared memory pools to Apache modules. Versions of MM up to and including 1.1.3 open temporary files in an unsafe manner, allowing a malicious local user to cause an application which uses MM to overwrite any file to which it has write access. All users are advised to upgrade to these errata packages which contain a patched version of MM that is not vulnerable to this issue. Thanks to Marcus Meissner for providing a patch for this issue.
    last seen2020-06-01
    modified2020-06-02
    plugin id12314
    published2004-07-06
    reporterThis script is Copyright (C) 2004-2019 and is owned by Tenable, Inc. or an Affiliate thereof.
    sourcehttps://www.tenable.com/plugins/nessus/12314
    titleRHEL 2.1 : mm (RHSA-2002:154)
  • NASL familyMandriva Local Security Checks
    NASL idMANDRAKE_MDKSA-2002-045.NASL
    descriptionMarcus Meissner and Sebastian Krahmer discovered a temporary file vulnerability in the mm library which is used by the Apache webserver. This vulnerability can be exploited to obtain root privilege if shell access to the apache user (typically apache or nobody) is already obtained.
    last seen2020-06-01
    modified2020-06-02
    plugin id13948
    published2004-07-31
    reporterThis script is Copyright (C) 2004-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/13948
    titleMandrake Linux Security Advisory : mm (MDKSA-2002:045)
  • NASL familyHP-UX Local Security Checks
    NASL idHPUX_PHSS_27627.NASL
    descriptions700_800 11.04 Virtualvault 4.5 inside server support : The remote HP-UX host is affected by multiple vulnerabilities : - Remotely exploitable potential vulnerabilities have been reported in CA-2002-21 and CVE-2002-0658. - Potential vulnerability in Apache web servers while handling SSL requests.
    last seen2020-06-01
    modified2020-06-02
    plugin id17480
    published2005-03-18
    reporterThis script is Copyright (C) 2005-2013 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/17480
    titleHP-UX PHSS_27627 : s700_800 11.04 Virtualvault 4.5 inside server support

Redhat

advisories
  • rhsa
    idRHSA-2002:153
  • rhsa
    idRHSA-2002:154
  • rhsa
    idRHSA-2002:156
  • rhsa
    idRHSA-2002:163
  • rhsa
    idRHSA-2002:164
  • rhsa
    idRHSA-2003:158