CVE-2017-12424
published 2017-08-04CVE-2017-12424: In shadow before 4.5, the newusers tool could be made to manipulate internal data structures in ways unintended by the authors. Malformed input may lead to…
PriorityP346critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
2.66%
84.0th percentile
In shadow before 4.5, the newusers tool could be made to manipulate internal data structures in ways unintended by the authors. Malformed input may lead to crashes (with a buffer overflow or other memory corruption) or other unspecified behaviors. This crosses a privilege boundary in, for example, certain web-hosting environments in which a Control Panel allows an unprivileged user account to create subaccounts.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | shadow | < shadow 1:4.5-1 (bookworm) | shadow 1:4.5-1 (bookworm) |
| paloalto | pan-os | — | — |
| shadow_project | shadow | < 4.5 | 4.5 |
| shadow_project | shadow | >= 0 < 1:4.5-1 | 1:4.5-1 |
| shadow_project | shadow | >= 0 < 1:4.5-1 | 1:4.5-1 |
| shadow_project | shadow | >= 0 < 1:4.5-1 | 1:4.5-1 |
| shadow_project | shadow | >= 0 < 1:4.5-1 | 1:4.5-1 |
| shadow_project | shadow | >= 0 < 1:4.5-1ubuntu2.2 | 1:4.5-1ubuntu2.2 |
| shadow_project | shadow | >= 0 < 1:4.1.5.1-1ubuntu9.5+esm1 | 1:4.1.5.1-1ubuntu9.5+esm1 |
| shadow_project | shadow | >= 0 < 1:4.2-3.1ubuntu5.5+esm1 | 1:4.2-3.1ubuntu5.5+esm1 |
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
vendor_debian9.8CRITICAL
vendor_redhat9.8CRITICAL
vendor_ubuntu9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-mmpg-c26w-2pfg: In shadow before 4
ghsa_unreviewed·2022-05-13
CVE-2017-12424 [CRITICAL] CWE-119 GHSA-mmpg-c26w-2pfg: In shadow before 4
In shadow before 4.5, the newusers tool could be made to manipulate internal data structures in ways unintended by the authors. Malformed input may lead to crashes (with a buffer overflow or other memory corruption) or other unspecified behaviors. This crosses a privilege boundary in, for example, certain web-hosting environments in which a Control Panel allows an unprivileged user account to create subaccounts.
OSV
shadow vulnerabilities
osv·2022-01-27·CVSS 9.8
CVE-2017-12424 [CRITICAL] shadow vulnerabilities
shadow vulnerabilities
It was discovered that shadow incorrectly handled certain inputs.
An attacker could possibly use this issue to cause a crash or
expose sensitive information. This issue only affected
Ubuntu 14.04 ESM and Ubuntu 16.04 ESM. (CVE-2017-12424)
It was discovered that shadow incorrectly handled certain inputs.
An attacker could possibly use this issue to expose sensitive information.
(CVE-2018-7169)
OSV
CVE-2017-12424: In shadow before 4
osv·2017-08-04·CVSS 9.8
CVE-2017-12424 [CRITICAL] CVE-2017-12424: In shadow before 4
In shadow before 4.5, the newusers tool could be made to manipulate internal data structures in ways unintended by the authors. Malformed input may lead to crashes (with a buffer overflow or other memory corruption) or other unspecified behaviors. This crosses a privilege boundary in, for example, certain web-hosting environments in which a Control Panel allows an unprivileged user account to create subaccounts.
Palo Alto
PAN-SA-2024-0013 Informational Bulletin: Impact of OSS CVEs in PAN-OS
vendor_paloalto·2024-11-01·CVSS 9.8
CVE-2017-12424 [CRITICAL] PAN-SA-2024-0013 Informational Bulletin: Impact of OSS CVEs in PAN-OS
PAN-SA-2024-0013 Informational Bulletin: Impact of OSS CVEs in PAN-OS
The Palo Alto Networks Product Security Assurance team has evaluated the following open source software (OSS) CVEs as they relate to PAN-OS software. While PAN-OS software may include the
CVEs: CVE-2017-12424, CVE-2021-3114, CVE-2021-31525, CVE-2021-33195, CVE-2021-33197, CVE-2021-33198, CVE-2021-34558, CVE-2021-36221, CVE-2021-4034, CVE-2021-44716, CVE-2021-44717, CVE-2022-1664, CVE-2022-1705, CVE-2022-23772, CVE-2022-24675, CVE-2022-24921, CVE-2022-28327, CVE-2022-2880, CVE-2022-29526, CVE-2022-30629, CVE-2022-30631, CVE-2022-30632, CVE-2022-32148, CVE-2022-32189, CVE-2022-41715, CVE-2022-41717, CVE-2022-41724, CVE-2022-41725, CVE-2023-24534, CVE-2023-24536, CVE-2023-24539, CVE-2023-29406, CVE-2023-29409, CVE-2023-39
Ubuntu
shadow vulnerabilities
vendor_ubuntu·2022-01-27·CVSS 9.8
CVE-2018-7169 [CRITICAL] shadow vulnerabilities
Title: shadow vulnerabilities
Summary: Several security issues were fixed in shadow.
It was discovered that shadow incorrectly handled certain inputs.
An attacker could possibly use this issue to cause a crash or
expose sensitive information. This issue only affected
Ubuntu 14.04 ESM and Ubuntu 16.04 ESM. (CVE-2017-12424)
It was discovered that shadow incorrectly handled certain inputs.
An attacker could possibly use this issue to expose sensitive information.
(CVE-2018-7169)
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
shadow-utils: Buffer overflow via newusers tool
vendor_redhat·2017-03-31·CVSS 9.8
CVE-2017-12424 [CRITICAL] CWE-120 shadow-utils: Buffer overflow via newusers tool
shadow-utils: Buffer overflow via newusers tool
In shadow before 4.5, the newusers tool could be made to manipulate internal data structures in ways unintended by the authors. Malformed input may lead to crashes (with a buffer overflow or other memory corruption) or other unspecified behaviors. This crosses a privilege boundary in, for example, certain web-hosting environments in which a Control Panel allows an unprivileged user account to create subaccounts.
A buffer overflow flaw leading to heap memory corruption was found in the shadow-utils's newusers utility. A local, authenticated attacker could potentially use this flaw to crash the newusers process by supplying crafted data to it.
Package: shadow-utils (Red Hat Enterprise Linux 5) - Not affected
Package: shadow-utils (Red Hat E
Debian
CVE-2017-12424: shadow - In shadow before 4.5, the newusers tool could be made to manipulate internal dat...
vendor_debian·2017·CVSS 9.8
CVE-2017-12424 [CRITICAL] CVE-2017-12424: shadow - In shadow before 4.5, the newusers tool could be made to manipulate internal dat...
In shadow before 4.5, the newusers tool could be made to manipulate internal data structures in ways unintended by the authors. Malformed input may lead to crashes (with a buffer overflow or other memory corruption) or other unspecified behaviors. This crosses a privilege boundary in, for example, certain web-hosting environments in which a Control Panel allows an unprivileged user account to create subaccounts.
Scope: local
bookworm: resolved (fixed in 1:4.5-1)
bullseye: resolved (fixed in 1:4.5-1)
forky: resolved (fixed in 1:4.5-1)
sid: resolved (fixed in 1:4.5-1)
trixie: resolved (fixed in 1:4.5-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2017-12424 shadow-utils: Buffer overflow via newusers tool [fedora-all]
bugzilla·2017-09-15·CVSS 9.8
CVE-2017-12424 [CRITICAL] CVE-2017-12424 shadow-utils: Buffer overflow via newusers tool [fedora-all]
CVE-2017-12424 shadow-utils: Buffer overflow via newusers tool [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions o
Bugzilla
CVE-2017-12424 shadow-utils: Buffer overflow via newusers tool
bugzilla·2017-08-04·CVSS 9.8
CVE-2017-12424 [CRITICAL] CVE-2017-12424 shadow-utils: Buffer overflow via newusers tool
CVE-2017-12424 shadow-utils: Buffer overflow via newusers tool
In shadow before 4.5, the newusers tool could be made to manipulate
internal data structures in ways unintended by the authors. Malformed
input may lead to crashes (with a buffer overflow or other memory
corruption) or other unspecified behaviors. This crosses a privilege
boundary in, for example, certain web-hosting environments in which a
Control Panel allows an unprivileged user account to create
subaccounts.
Upstream patch:
https://github.com/shadow-maint/shadow/commit/954e3d2e7113e9ac06632aee3c69b8d818cc8952
Discussion:
Created shadow-utils tracking bugs for this issue:
Affects: fedora-all [bug 1491933]
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=756630https://bugs.launchpad.net/ubuntu/+source/shadow/+bug/1266675https://github.com/shadow-maint/shadow/commit/954e3d2e7113e9ac06632aee3c69b8d818cc8952https://lists.debian.org/debian-lts-announce/2021/03/msg00020.htmlhttps://security.gentoo.org/glsa/201710-16https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=756630https://bugs.launchpad.net/ubuntu/+source/shadow/+bug/1266675https://github.com/shadow-maint/shadow/commit/954e3d2e7113e9ac06632aee3c69b8d818cc8952https://lists.debian.org/debian-lts-announce/2021/03/msg00020.htmlhttps://security.gentoo.org/glsa/201710-16
2017-08-04
Published