Vulnerability Name: | CVE-2011-1095 (CCN-66586) | ||||||||||||||||||||||||||||||||||||||||||||||||||||
Assigned: | 2010-08-11 | ||||||||||||||||||||||||||||||||||||||||||||||||||||
Published: | 2010-08-11 | ||||||||||||||||||||||||||||||||||||||||||||||||||||
Updated: | 2023-02-13 | ||||||||||||||||||||||||||||||||||||||||||||||||||||
Summary: | locale/programs/locale.c in locale in the GNU C Library (aka glibc or libc6) before 2.13 does not quote its output, which might allow local users to gain privileges via a crafted localization environment variable, in conjunction with a program that executes a script that uses the eval function. | ||||||||||||||||||||||||||||||||||||||||||||||||||||
CVSS v3 Severity: | 5.9 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||||||||||||||||||||||||||||||||||||||||||||||
CVSS v2 Severity: | 6.2 Medium (CVSS v2 Vector: AV:L/AC:H/Au:N/C:C/I:C/A:C) 4.6 Medium (Temporal CVSS v2 Vector: AV:L/AC:H/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
3.4 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
2.7 Low (REDHAT Temporal CVSS v2 Vector: AV:L/AC:H/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
| ||||||||||||||||||||||||||||||||||||||||||||||||||||
Vulnerability Consequences: | Gain Privileges | ||||||||||||||||||||||||||||||||||||||||||||||||||||
References: | Source: secalert@redhat.com Type: Exploit, Patch secalert@redhat.com Source: MITRE Type: CNA CVE-2011-1095 Source: CCN Type: VMSA-2011-0010 VMware ESX third party updates for Service Console Source: secalert@redhat.com Type: Exploit, Patch secalert@redhat.com Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: secalert@redhat.com Type: Exploit, Patch secalert@redhat.com Source: CCN Type: RHSA-2011-0412 Important: glibc security update Source: CCN Type: RHSA-2011-0413 Important: glibc security update Source: CCN Type: RHSA-2012-0125 Moderate: glibc security and bug fix update Source: CCN Type: SA43976 GNU C Library locale Quoting Weakness Source: CCN Type: SA45467 VMware ESX Console OS (COS) Multiple Vulnerabilities Source: CCN Type: SA46397 VMware ESX / ESXi Server Multiple Vulnerabilities Source: CCN Type: SA53166 Avaya Communication Manager OpenSSL and glibc Vulnerabilities Source: secalert@redhat.com Type: Vendor Advisory secalert@redhat.com Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: secalert@redhat.com Type: Exploit secalert@redhat.com Source: CCN Type: Sources Bugzilla Bug 11904 locale command does not quote (invalid) locale strings Source: secalert@redhat.com Type: Exploit secalert@redhat.com Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: CCN Type: GNU C Library Web page GNC C Library - GNU Project - Free Software Foundation (FSF) Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: CCN Type: OSVDB ID: 73407 GNU C Library (glibc) locale/programs/locale.c Output Quoting Localization Environment Variable Local Privilege Escalation Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: CCN Type: BID-47370 'glibc' Library 'locale/programs/locale.c' Local Privilege Escalation Vulnerability Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: secalert@redhat.com Type: Vendor Advisory secalert@redhat.com Source: secalert@redhat.com Type: Exploit, Patch secalert@redhat.com Source: CCN Type: ASA-2012-155 glibc security and bug fix update (RHSA-2012-0125) Source: XF Type: UNKNOWN gnuclibrary-locale-privilege-escalation(66586) Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com | ||||||||||||||||||||||||||||||||||||||||||||||||||||
Vulnerable Configuration: | Configuration RedHat 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||||||||||||||||||||||||||||||||||||||||||
Oval Definitions | |||||||||||||||||||||||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||||||||||||||||||||||
BACK |