CVE-2016-8657
published 2018-07-31CVE-2016-8657: It was discovered that EAP packages in certain versions of Red Hat Enterprise Linux use incorrect permissions for /etc/sysconfig/jbossas configuration files…
PriorityP339high7.8CVSS 3.0
AVLACLPRLUINSUCHIHAH
EPSS
0.42%
34.3th percentile
It was discovered that EAP packages in certain versions of Red Hat Enterprise Linux use incorrect permissions for /etc/sysconfig/jbossas configuration files. The file is writable to jboss group (root:jboss, 664). On systems using classic /etc/init.d init scripts (i.e. on Red Hat Enterprise Linux 6 and earlier), the file is sourced by the jboss init script and its content executed with root privileges when jboss service is started, stopped, or restarted.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | jboss_enterprise_application_platform | — | — |
| redhat | jboss_enterprise_application_platform | — | — |
| redhat | jboss_enterprise_application_platform | — | — |
CVSS provenance
nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-gqxm-5ghp-x5rj: It was discovered that EAP packages in certain versions of Red Hat Enterprise Linux use incorrect permissions for /etc/sysconfig/jbossas configuration
ghsa_unreviewed·2022-05-14
CVE-2016-8657 [HIGH] GHSA-gqxm-5ghp-x5rj: It was discovered that EAP packages in certain versions of Red Hat Enterprise Linux use incorrect permissions for /etc/sysconfig/jbossas configuration
It was discovered that EAP packages in certain versions of Red Hat Enterprise Linux use incorrect permissions for /etc/sysconfig/jbossas configuration files. The file is writable to jboss group (root:jboss, 664). On systems using classic /etc/init.d init scripts (i.e. on Red Hat Enterprise Linux 6 and earlier), the file is sourced by the jboss init script and its content executed with root privileges when jboss service is started, stopped, or restarted.
Red Hat
jboss: jbossas writable config files allow privilege escalation
vendor_redhat·2016-10-10·CVSS 7.8
CVE-2016-8657 [HIGH] CWE-732 jboss: jbossas writable config files allow privilege escalation
jboss: jbossas writable config files allow privilege escalation
It was discovered that EAP packages in certain versions of Red Hat Enterprise Linux use incorrect permissions for /etc/sysconfig/jbossas configuration files. The file is writable to jboss group (root:jboss, 664). On systems using classic /etc/init.d init scripts (i.e. on Red Hat Enterprise Linux 6 and earlier), the file is sourced by the jboss init script and its content executed with root privileges when jboss service is started, stopped, or restarted.
It was discovered that EAP packages in certain versions of Red Hat Enterprise Linux use incorrect permissions for /etc/sysconfig/jbossas configuration files. The file is writable to jboss group (root:jboss, 664). On systems using classic /etc/init.d init scripts (i.e. on Red
No detection rules found.
No public exploits indexed.
http://rhn.redhat.com/errata/RHSA-2017-0826.htmlhttp://rhn.redhat.com/errata/RHSA-2017-0827.htmlhttp://rhn.redhat.com/errata/RHSA-2017-0828.htmlhttp://rhn.redhat.com/errata/RHSA-2017-0829.htmlhttp://www.securityfocus.com/bid/96896https://access.redhat.com/errata/RHSA-2018:1609https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-8657http://rhn.redhat.com/errata/RHSA-2017-0826.htmlhttp://rhn.redhat.com/errata/RHSA-2017-0827.htmlhttp://rhn.redhat.com/errata/RHSA-2017-0828.htmlhttp://rhn.redhat.com/errata/RHSA-2017-0829.htmlhttp://www.securityfocus.com/bid/96896https://access.redhat.com/errata/RHSA-2018:1609https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-8657
2018-07-31
Published