CVE-2010-1161
published 2010-04-16CVE-2010-1161: Race condition in GNU nano before 2.2.4, when run by root to edit a file that is not owned by root, allows local user-assisted attackers to change the…
PriorityP414low3.7CVSS 2.0
AVLACHAuNCPIPAP
EPSS
0.27%
19.5th percentile
Race condition in GNU nano before 2.2.4, when run by root to edit a file that is not owned by root, allows local user-assisted attackers to change the ownership of arbitrary files via vectors related to the creation of backup files.
Affected
146 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | nano | < nano 2.2.4-1 (bookworm) | nano 2.2.4-1 (bookworm) |
| gnu | nano | <= 2.2.3 | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
CVSS provenance
nvdv2.03.7LOWAV:L/AC:H/Au:N/C:P/I:P/A:P
osv3.7LOW
vendor_debian3.7LOW
vendor_redhat3.7LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-q9pv-rh5p-8836: Race condition in GNU nano before 2
ghsa_unreviewed·2022-05-02
CVE-2010-1161 [LOW] CWE-362 GHSA-q9pv-rh5p-8836: Race condition in GNU nano before 2
Race condition in GNU nano before 2.2.4, when run by root to edit a file that is not owned by root, allows local user-assisted attackers to change the ownership of arbitrary files via vectors related to the creation of backup files.
OSV
CVE-2010-1161: Race condition in GNU nano before 2
osv·2010-04-16·CVSS 3.7
CVE-2010-1161 [LOW] CVE-2010-1161: Race condition in GNU nano before 2
Race condition in GNU nano before 2.2.4, when run by root to edit a file that is not owned by root, allows local user-assisted attackers to change the ownership of arbitrary files via vectors related to the creation of backup files.
Red Hat
nano: multiple file editing insecurities
vendor_redhat·2010-04-02·CVSS 3.7
CVE-2010-1161 [LOW] nano: multiple file editing insecurities
nano: multiple file editing insecurities
Race condition in GNU nano before 2.2.4, when run by root to edit a file that is not owned by root, allows local user-assisted attackers to change the ownership of arbitrary files via vectors related to the creation of backup files.
Statement: This issue was corrected in Red Hat Enterprise Linux 6 prior to its initial release.
Red Hat Enterprise Linux 5 is now in Production 3 Phase of the support and maintenance life cycle. This has been rated as having Low security impact and is not currently planned to be addressed in future updates for this or earlier releases. For additional information, refer to the Red Hat Enterprise Linux Life Cycle: https://access.redhat.com/support/policy/updates/errata/.
Package: nano (Red Hat Enterprise Linux 4) - Will
Debian
CVE-2010-1161: nano - Race condition in GNU nano before 2.2.4, when run by root to edit a file that is...
vendor_debian·2010·CVSS 3.7
CVE-2010-1161 [LOW] CVE-2010-1161: nano - Race condition in GNU nano before 2.2.4, when run by root to edit a file that is...
Race condition in GNU nano before 2.2.4, when run by root to edit a file that is not owned by root, allows local user-assisted attackers to change the ownership of arbitrary files via vectors related to the creation of backup files.
Scope: local
bookworm: resolved (fixed in 2.2.4-1)
bullseye: resolved (fixed in 2.2.4-1)
forky: resolved (fixed in 2.2.4-1)
sid: resolved (fixed in 2.2.4-1)
trixie: resolved (fixed in 2.2.4-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2010-1160, CVE-2010-1161 nano: multiple file editing insecurities [fedora-all]
bugzilla·2010-04-15·CVSS 1.9
CVE-2010-1160 [LOW] CVE-2010-1160, CVE-2010-1161 nano: multiple file editing insecurities [fedora-all]
CVE-2010-1160, CVE-2010-1161 nano: multiple file editing insecurities [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
Forr more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include the bug IDs of the
respective parent bugs filed against the "Security Response" product.
Please mention CVE ids in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?type_=security&bugs=582434
Please note: this issue affects
Bugzilla
CVE-2010-1160 CVE-2010-1161 nano: multiple file editing insecurities
bugzilla·2010-04-14·CVSS 1.9
CVE-2010-1160 [LOW] CVE-2010-1160 CVE-2010-1161 nano: multiple file editing insecurities
CVE-2010-1160 CVE-2010-1161 nano: multiple file editing insecurities
Dan Rosenberg reported [1] two vulnerabilities in GNU nano:
When editing a file that is owned by another user, the owner of the file could replace the file in mid-edit with a symbolic link, resulting in the editor overwriting the target of the symbolic link with the privileges of the user editing the file, without any warning to the editor. (CVE-2010-1160; fixed upstream in r4490)
When backup files are enabled, and root is editing a file owned by an untrusted user, that user could exploit race conditions in the creation of backup files to take ownership of arbitrary files. (CVE-2010-1161; fixed upstream in r4491, r4493, r4496)
Patches [2], [3], [4] are available to correct both issues.
[1] http://article.gmane.org/gm
Bugzilla
CVE-2010-1028 firefox: unspecified code execution vulnerability (VulnDisco 9.0)
bugzilla·2010-02-18·CVSS 9.3
CVE-2010-1028 [CRITICAL] CVE-2010-1028 firefox: unspecified code execution vulnerability (VulnDisco 9.0)
CVE-2010-1028 firefox: unspecified code execution vulnerability (VulnDisco 9.0)
A new release of VulnDisco indicates it contains a 0-day Firefox exploit against version 3.6 and possibly other versions. The vulnerability is unspecified, but is reportedly able to result in the execution of arbitrary code with the privileges of the user running Firefox.
There is no further information on this flaw currently available.
References:
https://forum.immunityinc.com/board/thread/1161/vulndisco-9-0/
http://secunia.com/advisories/38608/
Discussion:
This flaw only affected 3.6, and is fixed in 3.6.2. I'm closing this bug.
http://drosenbe.blogspot.com/2010/03/nano-as-root.htmlhttp://lists.gnu.org/archive/html/nano-devel/2010-04/msg00000.htmlhttp://secunia.com/advisories/39444http://svn.savannah.gnu.org/viewvc/trunk/nano/ChangeLog?revision=4503&root=nano&view=markuphttp://www.openwall.com/lists/oss-security/2010/04/14/4http://www.securitytracker.com/id?1023891http://drosenbe.blogspot.com/2010/03/nano-as-root.htmlhttp://lists.gnu.org/archive/html/nano-devel/2010-04/msg00000.htmlhttp://secunia.com/advisories/39444http://svn.savannah.gnu.org/viewvc/trunk/nano/ChangeLog?revision=4503&root=nano&view=markuphttp://www.openwall.com/lists/oss-security/2010/04/14/4http://www.securitytracker.com/id?1023891
2010-04-16
Published