Bug 1024614 (CVE-2013-4480)

Summary: CVE-2013-4480 Satellite: Interface to create the initial administrator user remains open after installation
Product: [Other] Security Response Reporter: David Jorm <djorm>
Component: vulnerabilityAssignee: Red Hat Product Security <security-response-team>
Status: CLOSED ERRATA QA Contact:
Severity: urgent Docs Contact:
Priority: urgent    
Version: unspecifiedCC: aspurrie, cperry, ggainey, jhutar, jrusnack, kseifried, meissner, mjc, mmraka, mzazrivec, security-response-team, taw, thomas, tlestach, xdmoon
Target Milestone: ---Keywords: Security
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2013-11-12 22:27:36 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On: 1025605, 1025606, 1025607, 1025608, 1025609    
Bug Blocks: 1024617    

Description David Jorm 2013-10-30 05:28:06 UTC
It was found that the web interface provided by Red Hat Satellite to create the initial administrator user was not disabled after the initial user was created. A remote attacker could use this flaw to create an administrator user with credentials they specify. This user could then be used to assume control of the Satellite server.

Comment 1 David Jorm 2013-10-30 05:31:32 UTC
Acknowledgements:

This issue was discovered by Andrew Spurrier of Red Hat.

Comment 18 errata-xmlrpc 2013-11-12 16:12:25 UTC
This issue has been addressed in following products:

  Red Hat Network Satellite Server v 5.2

Via RHSA-2013:1513 https://rhn.redhat.com/errata/RHSA-2013-1513.html

Comment 19 errata-xmlrpc 2013-11-12 16:24:55 UTC
This issue has been addressed in following products:

  Red Hat Network Satellite Server v 5.3
  Red Hat Network Satellite Server v 5.4
  Red Hat Network Satellite Server v 5.5
  Red Hat Satellite Server v 5.6

Via RHSA-2013:1514 https://rhn.redhat.com/errata/RHSA-2013-1514.html

Comment 20 Xixi 2013-11-12 17:17:32 UTC
Official Knowledgebase Article: https://access.redhat.com/site/articles/539283

KCS Solution (which references above Article): https://access.redhat.com/site/solutions/539313