CVE-2018-12026
published 2018-06-17CVE-2018-12026: During the spawning of a malicious Passenger-managed application, SpawningKit in Phusion Passenger 5.3.x before 5.3.2 allows such applications to replace key…
PriorityP347critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
1.95%
78.1th percentile
During the spawning of a malicious Passenger-managed application, SpawningKit in Phusion Passenger 5.3.x before 5.3.2 allows such applications to replace key files or directories in the spawning communication directory with symlinks. This then could result in arbitrary reads and writes, which in turn can result in information disclosure and privilege escalation.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | passenger | — | — |
| phusion | passenger | >= 0 < 6.0.10-3build1 | 6.0.10-3build1 |
| phusion | passenger | >= 5.3.0 < 5.3.2 | 5.3.2 |
| phusion | passenger | >= 5.3.0 < 5.3.2 | 5.3.2 |
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
vendor_debian9.8LOW
vendor_redhat9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
passenger: SpawningKit allows malicious applications to replace files and directories allowing for arbitrary reads and writes
vendor_redhat·2018-06-05·CVSS 9.8
CVE-2018-12026 [CRITICAL] CWE-284 passenger: SpawningKit allows malicious applications to replace files and directories allowing for arbitrary reads and writes
passenger: SpawningKit allows malicious applications to replace files and directories allowing for arbitrary reads and writes
During the spawning of a malicious Passenger-managed application, SpawningKit in Phusion Passenger 5.3.x before 5.3.2 allows such applications to replace key files or directories in the spawning communication directory with symlinks. This then could result in arbitrary reads and writes, which in turn can result in information disclosure and privilege escalation.
Package: rubygem-passenger (Red Hat Ceph Storage 1.3) - Not affected
Package: rubygem-passenger (Red Hat Satellite 6) - Not affected
Package: rubygem-passenger (Red Hat Update Infrastructure 3 for Cloud Providers) - Not affected
Debian
CVE-2018-12026: passenger - During the spawning of a malicious Passenger-managed application, SpawningKit in...
vendor_debian·2018·CVSS 9.8
CVE-2018-12026 [CRITICAL] CVE-2018-12026: passenger - During the spawning of a malicious Passenger-managed application, SpawningKit in...
During the spawning of a malicious Passenger-managed application, SpawningKit in Phusion Passenger 5.3.x before 5.3.2 allows such applications to replace key files or directories in the spawning communication directory with symlinks. This then could result in arbitrary reads and writes, which in turn can result in information disclosure and privilege escalation.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
GHSA
Phusion Passenger SpawningKit Contains Arbitrary Read/Write Vulnerability
ghsa·2022-05-14
CVE-2018-12026 [CRITICAL] CWE-59 Phusion Passenger SpawningKit Contains Arbitrary Read/Write Vulnerability
Phusion Passenger SpawningKit Contains Arbitrary Read/Write Vulnerability
During the spawning of a malicious Passenger-managed application, SpawningKit in Phusion Passenger 5.3.x before 5.3.2 allows such applications to replace key files or directories in the spawning communication directory with symlinks. This then could result in arbitrary reads and writes, which in turn can result in information disclosure and privilege escalation.
OSV
Phusion Passenger SpawningKit Contains Arbitrary Read/Write Vulnerability
osv·2022-05-14
CVE-2018-12026 [CRITICAL] Phusion Passenger SpawningKit Contains Arbitrary Read/Write Vulnerability
Phusion Passenger SpawningKit Contains Arbitrary Read/Write Vulnerability
During the spawning of a malicious Passenger-managed application, SpawningKit in Phusion Passenger 5.3.x before 5.3.2 allows such applications to replace key files or directories in the spawning communication directory with symlinks. This then could result in arbitrary reads and writes, which in turn can result in information disclosure and privilege escalation.
OSV
CVE-2018-12026: During the spawning of a malicious Passenger-managed application, SpawningKit in Phusion Passenger 5
osv·2018-06-17·CVSS 9.8
CVE-2018-12026 [CRITICAL] CVE-2018-12026: During the spawning of a malicious Passenger-managed application, SpawningKit in Phusion Passenger 5
During the spawning of a malicious Passenger-managed application, SpawningKit in Phusion Passenger 5.3.x before 5.3.2 allows such applications to replace key files or directories in the spawning communication directory with symlinks. This then could result in arbitrary reads and writes, which in turn can result in information disclosure and privilege escalation.
No detection rules found.
No public exploits indexed.
2018-06-17
Published