Bug 433723 - (CVE-2008-0932) CVE-2008-0932 sword: diatheke.pl command injection
CVE-2008-0932 sword: diatheke.pl command injection
Status: CLOSED NOTABUG
Product: Security Response
Classification: Other
Component: vulnerability (Show other bugs)
unspecified
All Linux
high Severity high
: ---
: ---
Assigned To: Red Hat Product Security
http://secunia.com/advisories/29012/
: Security
Depends On: 433724 433725 433726
Blocks:
  Show dependency treegraph
 
Reported: 2008-02-20 20:00 EST by Lubomir Kundrak
Modified: 2008-04-24 07:46 EDT (History)
1 user (show)

See Also:
Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of:
Environment:
Last Closed: 2008-04-24 07:46:48 EDT
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---


Attachments (Terms of Use)

  None (edit)
Description Lubomir Kundrak 2008-02-20 20:00:46 EST
Description of problem:

The Diatheke CGI allows arbitrary command execution in the context of 
the webserver, e.g. www-data by simply abusing the range parameter.

For example, &range=`yes` will consume tons of resources on the affected 
webserver. Escalation of privleges and command shells are left as an 
exercise to the reader.

From Debian: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=466449
Comment 2 Lubomir Kundrak 2008-02-20 20:04:58 EST
Gentoo, patch: dhttp://bugs.gentoo.org/show_bug.cgi?id=210754
Comment 3 Fedora Update System 2008-02-21 09:05:03 EST
sword-1.5.10-2.fc7 has been submitted as an update for Fedora 7
Comment 4 Fedora Update System 2008-02-21 09:06:10 EST
sword-1.5.10-2.fc8 has been submitted as an update for Fedora 8
Comment 5 Fedora Update System 2008-02-25 19:22:14 EST
sword-1.5.10-2.fc7 has been pushed to the Fedora 7 stable repository.  If problems still persist, please make note of it in this bug report.
Comment 6 Fedora Update System 2008-02-25 19:24:47 EST
sword-1.5.10-2.fc8 has been pushed to the Fedora 8 stable repository.  If problems still persist, please make note of it in this bug report.
Comment 7 Tomas Hoger 2008-02-26 03:07:57 EST
Do Fedora sword packages really need this patch?  I fail to see diatheke.pl in
any of the sword non-source RPMs... 
Comment 8 Tomas Hoger 2008-04-24 07:46:48 EDT
Fedora packages were updated, however, we do not seem to ship affected script. 
Closing as notabug.

Note You need to log in before you can comment on or make changes to this bug.