Bug 30031

Summary: joe tries to use ./.joerc
Product: [Retired] Red Hat Linux Reporter: Pekka Savola <pekkas>
Component: joeAssignee: Trond Eivind Glomsrxd <teg>
Status: CLOSED RAWHIDE QA Contact: David Lawrence <dkl>
Severity: medium Docs Contact:
Priority: high    
Version: 7.0Keywords: Security
Target Milestone: ---   
Target Release: ---   
Hardware: i386   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2001-02-28 17:21:48 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Pekka Savola 2001-02-28 17:21:43 UTC
As per:

---
Date: Wed, 28 Feb 2001 15:13:42 +0100
From: advisories
To: BUGTRAQ
Subject: Joe's Own Editor File Handling Error
---

Joe tries to use ./.joerc for it's configuration file.  If joe is used in a world-writable
directory, attacker can create .joerc there with malicious definitions that may
lead to to local user login (/root if root uses joe) compromise.

Don't they ever learn...

Comment 1 Trond Eivind Glomsrxd 2001-02-28 22:15:05 UTC
Doh. Stuuuupid people. (not that any non-newbie would use joe on a regular basis
anyway). Fixed in joe-2.8-44.



Comment 2 Seth Vidal 2001-03-01 06:36:58 UTC
this should really be a fix that gets pushed out to 6.X and 7.0 - its a dumb
error but it could be exploited and I know (I am) a person who uses joe all the
time.

course - I've already patched my joe rpm :)

-sv


Comment 3 Trond Eivind Glomsrxd 2001-03-01 07:01:41 UTC
I've already made rpms and an errata request for 5.2, 6.2 and 7.