Family: Mandrake Local Security Checks --> Category: infos
MDKSA-2005:031: perl Vulnerability Scan
Vulnerability Scan Summary
Check for the version of the perl package
Detailed Explanation for this Vulnerability Test
The remote host is missing the patch for the advisory MDKSA-2005:031 (perl).
Jeroen van Wolffelaar discovered that the rmtree() function in the perl
File::Path module would remove directories in an insecure manner which could
lead to the removal of arbitrary files and directories via a symlink attack
Trustix developers discovered several insecure uses of temporary files in many
modules which could allow a local attacker to overwrite files via symlink
'KF' discovered two vulnerabilities involving setuid-enabled perl scripts. By
setting the PERLIO_DEBUG environment variable and calling an arbitrary
setuid-root perl script, a possible hacker could overwrite arbitrary files with perl
debug messages (CVE-2005-0155). As well, calling a setuid-root perl script with
a very long path would cause a buffer overflow if PERLIO_DEBUG was set, which
could be exploited to execute arbitrary files with root rights
The provided packages have been patched to resolve these problems.
Solution : http://wwwnew.mandriva.com/security/advisories?name=MDKSA-2005:031
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.