Results 1 to 4 of 4

Thread: KNOPPIX CD Default Install May Let Local Users Grab Root

  1. #1
    Member registered user
    Join Date
    Nov 2002
    Posts
    85

    KNOPPIX CD Default Install May Let Local Users Grab Root

    http://www.securitytracker.com/alert...l/1007142.html

    KNOPPIX CD Default Configuration May Let Local Users Grab Root Privileges
    SecurityTracker Alert ID: 1007142
    CVE Reference: GENERIC-MAP-NOMATCH (Links to External Site)
    Date: Jul 9 2003
    Impact: Modification of system information, Modification of user information, Root access via local system
    Exploit Included: Yes
    Description: A vulnerability was reported in the default configuration of the KNOPPIX CD. A local user can obtain root privileges.

    It is reported that the "knx-hdinstall" default configuration creates unsafe temporary files in the '/tmp/.qt/' directory: 'qt_plugins_3.0rc', and 'qt_plugins_3.0rc.lock'. A local user can create a symbolic link (symlink) from a critical file on the system to one of these temporary files. Then, when a target user logs in, the symlinked file will be overwritten with the privileges of the target user, potentially including the root user.
    Impact: A local user can cause a target user to overwrite a file on the system with the privileges of the target user. This can be exploited by a local user to potentially obtain root privileges.

    Solution: No solution was available at the time of this entry.
    Vendor URL: www.knoppix.org/ (Links to External Site)
    Cause: Access control error, State error
    Reported By: Hugo "Vazquez" "Carames" <overclocking_a_la_abuela@hotmail.com>
    Message History: None.

  2. #2
    Junior Member
    Join Date
    Jun 2003
    Posts
    9
    as a newby (and a root on a hd installed- Knoppix) What's the sollution to prevent this???

  3. #3
    Junior Member
    Join Date
    Jul 2003
    Posts
    2
    I installed with an older build of 3.2 and have no such directory.

  4. #4
    Senior Member registered user
    Join Date
    Mar 2003
    Location
    Cleveland, OH
    Posts
    228
    The solution is to reboot your pc... all user created files in /tmp will be deleted, even on a hard drive install.

    This is (IMHO) a very LOW risk (but one I want to be aware of regardless). Here's why I would consider this low risk: you need local (hands on) access to install or use knoppix from a cd anyways! When you have physical access, and boot from a knoppix cd, root access is readily available. After you do a hard drive install and reboot, the system security is only going to be as good as your setup guarding against know vulnerabilities.

    My two cents, and worth every penny.

    ~paul

Similar Threads

  1. knoppix 3.3 'default' root passwd???
    By Cerebrus in forum General Support
    Replies: 4
    Last Post: 06-21-2004, 01:49 PM
  2. Stange Login + Default Users
    By jeremymeindl in forum Hdd Install / Debian / Apt
    Replies: 1
    Last Post: 05-29-2004, 01:06 AM
  3. Cannot start X under any users other than root
    By pizarra in forum Hdd Install / Debian / Apt
    Replies: 2
    Last Post: 03-23-2004, 06:01 PM
  4. help Give users root access
    By warpedmind in forum General Support
    Replies: 12
    Last Post: 11-19-2003, 12:10 AM
  5. OpenOffice non Root or Knoppix Users
    By rec9140 in forum General Support
    Replies: 0
    Last Post: 09-19-2003, 07:21 PM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  


Dell PowerEdge R640 Server | 2x Gold 6132 28 Cores | H730p | Choose RAM / DRIVES picture

Dell PowerEdge R640 Server | 2x Gold 6132 28 Cores | H730p | Choose RAM / DRIVES

$2630.00



### MZ-7KE1T0 Samsung 850 Pro Series 1TB 2.5 inch SATA3 SSD ### picture

### MZ-7KE1T0 Samsung 850 Pro Series 1TB 2.5 inch SATA3 SSD ###

$105.00



M.2 NVME SATA SSD Enclosure USB 3.2 Gen 2 10Gbps for M-Key or M+B Key SSD to 8TB picture

M.2 NVME SATA SSD Enclosure USB 3.2 Gen 2 10Gbps for M-Key or M+B Key SSD to 8TB

$19.86



WD 500GB My Passport SSD, Portable External Solid State Drive WDBAGF5000ARD-WESN picture

WD 500GB My Passport SSD, Portable External Solid State Drive WDBAGF5000ARD-WESN

$59.99



Patriot P210 128GB 256GB 512GB 1TB 2TB 2.5

Patriot P210 128GB 256GB 512GB 1TB 2TB 2.5" SATA 3 6GB/s Internal SSD PC/MAC Lot

$14.99



Micron 5100 MAX 120GB SATA 6Gb/s 2.5

Micron 5100 MAX 120GB SATA 6Gb/s 2.5" Internal SSD MTFDDAK120TCC Solid State

$9.99



Intel DC S3510 Series 120GB SSD 2.5

Intel DC S3510 Series 120GB SSD 2.5" 6Gb/s SATA Solid State Drive SSDSC2BB120G6K

$9.99



Western Digital PC SN730 256GB NVMe SDBQNTY-256G M.2 2280 PCIe Solid State (SSD) picture

Western Digital PC SN730 256GB NVMe SDBQNTY-256G M.2 2280 PCIe Solid State (SSD)

$16.00



Netac 1TB 2TB 512GB Internal SSD 2.5'' SATA III 6Gb/s Solid State Drive lot picture

Netac 1TB 2TB 512GB Internal SSD 2.5'' SATA III 6Gb/s Solid State Drive lot

$109.99



Fanxiang SSD 512GB 1TB 2TB 4TB 2.5'' SSD SATA III Internal Solid State Drive lot picture

Fanxiang SSD 512GB 1TB 2TB 4TB 2.5'' SSD SATA III Internal Solid State Drive lot

$198.99