openibd in OpenFabrics Enterprise Distribution (OFED) 1.5.2 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/ib_set_node_desc.sh temporary file.
The product attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource.
Link | Tags |
---|---|
http://www.openwall.com/lists/oss-security/2010/10/22/1 | mailing list |
http://www.securityfocus.com/bid/44332 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/62753 | vdb entry |
http://secunia.com/advisories/41937 | third party advisory |
http://www.osvdb.org/68856 | vdb entry |
http://lists.openfabrics.org/pipermail/ewg/2010-October/015886.html | mailing list |