Red Hat Directory Server 8.0, when running on Red Hat Enterprise Linux, uses insecure permissions for the redhat-idm-console script, which allows local users to execute arbitrary code by modifying the script.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://www.securitytracker.com/id?1019677 | vdb entry |
http://www.redhat.com/support/errata/RHSA-2008-0191.html | patch vendor advisory |
http://secunia.com/advisories/29482 | third party advisory |
http://www.securityfocus.com/bid/28327 | vdb entry |