CVE-2008-0889
published 2008-03-20CVE-2008-0889: Red Hat Directory Server 8.0, when running on Red Hat Enterprise Linux, uses insecure permissions for the redhat-idm-console script, which allows local users…
PriorityP410low2.1CVSS 2.0
AVLACLAuNCNIPAN
EPSS
0.40%
32.8th percentile
Red Hat Directory Server 8.0, when running on Red Hat Enterprise Linux, uses insecure permissions for the redhat-idm-console script, which allows local users to execute arbitrary code by modifying the script.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | directory_server | — | — |
CVSS provenance
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:N/I:P/A:N
vendor_redhat2.1LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
server: insecure permissions on fedora/redhat-idm-console
vendor_redhat·2008-03-19·CVSS 2.1
CVE-2008-0889 [LOW] CWE-732 server: insecure permissions on fedora/redhat-idm-console
server: insecure permissions on fedora/redhat-idm-console
Red Hat Directory Server 8.0, when running on Red Hat Enterprise Linux, uses insecure permissions for the redhat-idm-console script, which allows local users to execute arbitrary code by modifying the script.
GHSA
GHSA-33j4-pwcw-qh87: Red Hat Directory Server 8
ghsa_unreviewed·2022-05-01
CVE-2008-0889 [LOW] GHSA-33j4-pwcw-qh87: Red Hat Directory Server 8
Red Hat Directory Server 8.0, when running on Red Hat Enterprise Linux, uses insecure permissions for the redhat-idm-console script, which allows local users to execute arbitrary code by modifying the script.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2008-0889 directory server: insecure permissions on fedora/redhat-idm-console
bugzilla·2008-03-05·CVSS 2.1
CVE-2008-0889 [LOW] CVE-2008-0889 directory server: insecure permissions on fedora/redhat-idm-console
CVE-2008-0889 directory server: insecure permissions on fedora/redhat-idm-console
Doncho N. Gunchev reported, that fedora-idm-console is installed with insecure
permissions by default, allowing any local user to modify this script.
This issue also affects redhat-idm-console as shipped with Red Hat Directory
Server 8.
Discussion:
Lifting embargo.
---
This issue only affected RPM packages of Red Hat Directory Server. Other
platforms were not affected by this issue.
---
The new packages have been released, both for redhat-idm-console and
fedora-idm-console. Can we close this bug?
---
This issue was addressed in:
Red Hat Directory Server:
http://rhn.redhat.com/errata/RHSA-2008-0191.html
Bugzilla
fedora-idm-console is world writable
bugzilla·2008-03-05·CVSS 2.1
[LOW] fedora-idm-console is world writable
fedora-idm-console is world writable
Description of problem:
The file /usr/bin/fedora-idm-console is world writable.
Version-Release number of selected component (if applicable):
fedora-idm-console-1.1.0-5.fc6
How reproducible:
always, removed and yum installed it again - no change. rpmverify shows no
problems too.
Steps to Reproduce:
1. yum -y install fedora-idm-console
2. ls -al /usr/bin/fedora-idm-console
Actual results:
-rwxrwxrwx 1 root root 1614 2007-12-20 13:20 /usr/bin/fedora-idm-console
Expected results:
-rwxr-xr-x 1 root root 1614 2007-12-20 13:20 /usr/bin/fedora-idm-console
Additional info:
I did rpmbuild --rebuild and the result is the same... here's the reason I think:
--- cut ---
%install
rm -rf $RPM_BUILD_ROOT
install -d $RPM_BUILD_ROOT%{_javadir}
install -m777 built/
Bugzilla
CVE-2008-0890 DirServ 7.1: insecure default permissions on jars directory
bugzilla·2008-03-05·CVSS 2.1
CVE-2008-0890 [LOW] CVE-2008-0890 DirServ 7.1: insecure default permissions on jars directory
CVE-2008-0890 DirServ 7.1: insecure default permissions on jars directory
While investigating CVE-2008-0889 affecting Red Hat Directory Server 8 / Fedora
Directory Server, it was discovered that Red Hat Directory Server 7.1 RPMS
create directory /opt/redhat-ds/java/jars as world writable, allowing local
users to remove .jar files in this directory and replace them with modified
ones, leading to a privilege escalation.
Discussion:
This issue did not affect Red Hat Directory Server 7.1 for Solaris and HP-UX.
Permissions of jars directory on those platforms were set correctly.
---
Lifting embargo.
---
https://www.redhat.com/security/data/cve/CVE-2008-0890.html
http://secunia.com/advisories/29482http://www.redhat.com/support/errata/RHSA-2008-0191.htmlhttp://www.securityfocus.com/bid/28327http://www.securitytracker.com/id?1019677http://secunia.com/advisories/29482http://www.redhat.com/support/errata/RHSA-2008-0191.htmlhttp://www.securityfocus.com/bid/28327http://www.securitytracker.com/id?1019677
2008-03-20
Published