CVE-2011-0022
published 2011-02-23CVE-2011-0022: The setup scripts in 389 Directory Server 1.2.x (aka Red Hat Directory Server 8.2.x), when multiple unprivileged instances are configured, use 0777 permissions…
PriorityP417medium4.7CVSS 2.0
AVLACMAuNCNINAC
EPSS
0.29%
21.3th percentile
The setup scripts in 389 Directory Server 1.2.x (aka Red Hat Directory Server 8.2.x), when multiple unprivileged instances are configured, use 0777 permissions for the /var/run/dirsrv directory, which allows local users to cause a denial of service (daemon outage or arbitrary process termination) by replacing PID files contained in this directory.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| fedoraproject | 389_directory_server | — | — |
| redhat | directory_server | — | — |
| redhat | directory_server | — | — |
CVSS provenance
nvdv2.04.7MEDIUMAV:L/AC:M/Au:N/C:N/I:N/A:C
ghsa5.0MEDIUM
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
tomcat: large number of parameters DoS
vendor_redhat·2012-01-17·CVSS 5.0
CVE-2012-0022 [MEDIUM] tomcat: large number of parameters DoS
tomcat: large number of parameters DoS
Apache Tomcat 5.5.x before 5.5.35, 6.x before 6.0.34, and 7.x before 7.0.23 uses an inefficient approach for handling parameters, which allows remote attackers to cause a denial of service (CPU consumption) via a request that contains many parameters and parameter values, a different vulnerability than CVE-2011-4858.
Red Hat
Server: insecure pid file directory permissions
vendor_redhat·2011-02-22·CVSS 4.7
CVE-2011-0022 [MEDIUM] Server: insecure pid file directory permissions
Server: insecure pid file directory permissions
The setup scripts in 389 Directory Server 1.2.x (aka Red Hat Directory Server 8.2.x), when multiple unprivileged instances are configured, use 0777 permissions for the /var/run/dirsrv directory, which allows local users to cause a denial of service (daemon outage or arbitrary process termination) by replacing PID files contained in this directory.
GHSA
Denial of Service in Apache Tomcat
ghsa·2022-05-04·CVSS 5.0
CVE-2012-0022 [MEDIUM] Denial of Service in Apache Tomcat
Denial of Service in Apache Tomcat
Apache Tomcat 5.5.x before 5.5.35, 6.x before 6.0.34, and 7.x before 7.0.23 uses an inefficient approach for handling parameters, which allows remote attackers to cause a denial of service (CPU consumption) via a request that contains many parameters and parameter values, a different vulnerability than CVE-2011-4858.
GHSA
GHSA-89f5-968h-h37p: The setup scripts in 389 Directory Server 1
ghsa_unreviewed·2022-05-03
CVE-2011-0022 [MEDIUM] GHSA-89f5-968h-h37p: The setup scripts in 389 Directory Server 1
The setup scripts in 389 Directory Server 1.2.x (aka Red Hat Directory Server 8.2.x), when multiple unprivileged instances are configured, use 0777 permissions for the /var/run/dirsrv directory, which allows local users to cause a denial of service (daemon outage or arbitrary process termination) by replacing PID files contained in this directory.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2011-4295 CVE-2011-4296 moodle: multiple flaws in 2.x < 2.0.4 (MSA-11-0021, MSA-11-0022)
bugzilla·2011-08-11·CVSS 6.5
CVE-2011-4295 [MEDIUM] CVE-2011-4295 CVE-2011-4296 moodle: multiple flaws in 2.x < 2.0.4 (MSA-11-0021, MSA-11-0022)
CVE-2011-4295 CVE-2011-4296 moodle: multiple flaws in 2.x < 2.0.4 (MSA-11-0021, MSA-11-0022)
Two flaws were reported [1],[2] in moodle versions < 2.0.4 and < 2.1.1 (1.9.x is not affected):
moodle_enrol_external:role_assign() does not obey role assignment restrictions (MSA-11-0021)
The course creator role has incorrect default permissions (MSA-11-0022)
[1] http://moodle.org/mod/forum/discuss.php?d=182738
[2] http://moodle.org/mod/forum/discuss.php?d=182739
Recommend upgrading EPEL6 and Fedora 16/rawhide to 2.0.4. Earlier versions of EPEL and Fedora have 1.9.x or 1.8.x and are not affected.
Discussion:
Created moodle tracking bugs for this issue
Affects: epel-6 [bug 730070]
Affects: fedora-rawhide [bug 730071]
---
MSA-11-0021 was assigned CVE-2011-4295
MSA-11-0022 was assigned CVE-
Bugzilla
CVE-2011-0022 Directory Server: insecure pid file directory permissions
bugzilla·2011-01-20·CVSS 4.7
CVE-2011-0022 [MEDIUM] CVE-2011-0022 Directory Server: insecure pid file directory permissions
CVE-2011-0022 Directory Server: insecure pid file directory permissions
It was discovered that 389 / Red Hat Directory Server's setup scripts
set insecure permissions (0777) on the /var/run/dirsrv directory used to
store Directory Server's pid files when multiple Directory Server
instances were configured on the system to be run under the different
unprivileged users.
A local user could use this flaw to create, remove or replace pid files
in this directory, possibly preventing correct start of the Directory
Server instances, or causing Directory Server init script to kill
arbitrary process during the Directory Server shutdown.
Discussion:
The CVE identifier of CVE-2011-0022 has been assigned to this issue.
---
*** Bug 669767 has been marked as a duplicate of this bug. ***
---
This
http://www.redhat.com/support/errata/RHSA-2011-0293.htmlhttp://www.securityfocus.com/bid/46489http://www.securitytracker.com/id?1025102https://bugzilla.redhat.com/show_bug.cgi?id=671199http://www.redhat.com/support/errata/RHSA-2011-0293.htmlhttp://www.securityfocus.com/bid/46489http://www.securitytracker.com/id?1025102https://bugzilla.redhat.com/show_bug.cgi?id=671199
2011-02-23
Published