Your message dated Wed, 21 Dec 2011 04:49:03 +0100
with message-id <20111221034903.gc1...@harald-has.a-little-linux-box.at>
and subject line CVE-2011-2147: missing restrictions
has caused the Debian Bug report #628449,
regarding CVE-2011-2147: missing restrictions
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)
--
628449: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=628449
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: openswan
Severity: grave
Tags: security
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Hi,
the following CVE (Common Vulnerabilities & Exposures) id was
published for openswan.
CVE-2011-2147[0]:
| Openswan 2.2.x does not properly restrict permissions for (1)
| /var/run/starter.pid, related to starter.c in the IPsec starter, and
| (2) /var/lock/subsys/ipsec, which allows local users to kill arbitrary
| processes by writing a PID to a file, or possibly bypass disk quotas
| by writing arbitrary data to a file, as demonstrated by files with
| 0666 permissions, a different vulnerability than CVE-2011-1784.
If you fix the vulnerability please also make sure to include the
CVE id in your changelog entry.
Cheers,
Steffen
For further information see:
[0] http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-2147
http://security-tracker.debian.org/tracker/CVE-2011-2147
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
iEYEARECAAYFAk3hvegACgkQ62zWxYk/rQcMHQCfb3lMZTutIDaU9koXSOcuisCx
ImkAn0nU0FH8iwQfjeN0l4hyY0Y2tFdK
=DkbD
-----END PGP SIGNATURE-----
--- End Message ---
--- Begin Message ---
Package: openswan
Tags: unreproducible
Dear Steffen Joeris,
the following problem analysis was done on a system running:
cat /etc/debian_version
5.0.9
dpkg --list openswan|grep ^ii
ii openswan 1:2.4.12+dfsg-1.3+lenny2
IPSEC utilities for Openswan
Installing incron with the following config:
cat /etc/incron.d/ipsec
/var/run IN_ALL_EVENTS /usr/local/bin/write.sh $@/$#
/var/run/pluto IN_ALL_EVENTS /usr/local/bin/write.sh $@/$#
/var/lock/subsys IN_ALL_EVENTS /usr/local/bin/write.sh $@/$#
cat /usr/local/bin/write.sh
#!/bin/bash
ls -al $1 >> /tmp/RUN_LOG.txt
Then doing:
/etc/init.d/ipsec start
/etc/init.d/ipsec stop
The attached logfile shows that no /var/run/starter.pid gets ever
created and the permissions of /var/lock/subsys/ipsec are never 0666.
Therefore I will close this bug report, if you have any objections
or further questions please contact me or Rene Mayrhofer.
Kind regards
Harald Jenny
-rw-r--r-- 1 root root 0 2011-12-21 04:30 /var/run/pluto/ipsec_setup.out
-rw-r--r-- 1 root root 0 2011-12-21 04:30 /var/run/pluto/ipsec_setup.out
-rw-r--r-- 1 root root 34 2011-12-21 04:30 /var/run/pluto/ipsec_setup.out
-rw-r--r-- 1 root root 0 2011-12-21 04:30 /var/run/pluto/ipsec_setup.pid
-rw-r--r-- 1 root root 0 2011-12-21 04:30 /var/run/pluto/ipsec_setup.pid
-rw-r--r-- 1 root root 6 2011-12-21 04:30 /var/run/pluto/ipsec_setup.pid
-rw-r--r-- 1 root root 6 2011-12-21 04:30 /var/run/pluto/ipsec_setup.pid
-rw-r--r-- 1 root root 0 2011-12-21 04:30 /var/run/pluto/ipsec.info
-rw-r--r-- 1 root root 0 2011-12-21 04:30 /var/run/pluto/ipsec.info
-rw-r--r-- 1 root root 0 2011-12-21 04:30 /var/run/pluto/ipsec.info
-rw-r--r-- 1 root root 0 2011-12-21 04:30 /var/run/pluto/ipsec.info
-rw-r--r-- 1 root root 22 2011-12-21 04:30 /var/run/pluto/ipsec.info
-rw-r--r-- 1 root root 113 2011-12-21 04:30 /var/run/pluto/ipsec.info
-rw-r--r-- 1 root root 113 2011-12-21 04:30 /var/run/pluto/ipsec.info
-rw-r--r-- 1 root root 0 2011-12-21 04:30 /var/lock/subsys/ipsec
-rw-r--r-- 1 root root 0 2011-12-21 04:30 /var/lock/subsys/ipsec
-rw-r--r-- 1 root root 0 2011-12-21 04:30 /var/lock/subsys/ipsec
-rw-r--r-- 1 root root 0 2011-12-21 04:30 /var/lock/subsys/ipsec
-rw-r--r-- 1 root root 113 2011-12-21 04:30 /var/run/pluto/ipsec.info
-rw-r--r-- 1 root root 113 2011-12-21 04:30 /var/run/pluto/ipsec.info
-rw-r--r-- 1 root root 113 2011-12-21 04:30 /var/run/pluto/ipsec.info
-r--r--r-- 1 root root 0 2011-12-21 04:30 /var/run/pluto/pluto.pid
-r--r--r-- 1 root root 0 2011-12-21 04:30 /var/run/pluto/pluto.pid
srwx------ 1 root root 0 2011-12-21 04:30 /var/run/pluto/pluto.ctl
-r--r--r-- 1 root root 6 2011-12-21 04:30 /var/run/pluto/pluto.pid
-r--r--r-- 1 root root 6 2011-12-21 04:30 /var/run/pluto/pluto.pid
-rw-r--r-- 1 root root 2 2011-12-21 04:30 /var/run/pluto/ipsec_setup.st
-rw-r--r-- 1 root root 2 2011-12-21 04:30 /var/run/pluto/ipsec_setup.st
-rw-r--r-- 1 root root 2 2011-12-21 04:30 /var/run/pluto/ipsec_setup.st
-rw-r--r-- 1 root root 2 2011-12-21 04:30 /var/run/pluto/ipsec_setup.st
-rw-r--r-- 1 root root 34 2011-12-21 04:30 /var/run/pluto/ipsec_setup.out
-rw-r--r-- 1 root root 34 2011-12-21 04:30 /var/run/pluto/ipsec_setup.out
-rw-r--r-- 1 root root 34 2011-12-21 04:30 /var/run/pluto/ipsec_setup.out
-rw-r--r-- 1 root root 34 2011-12-21 04:30 /var/run/pluto/ipsec_setup.out
-rw-r--r-- 1 root root 113 2011-12-21 04:30 /var/run/pluto/ipsec.info
-rw-r--r-- 1 root root 113 2011-12-21 04:30 /var/run/pluto/ipsec.info
-rw-r--r-- 1 root root 113 2011-12-21 04:30 /var/run/pluto/ipsec.info
-rw-r--r-- 1 root root 113 2011-12-21 04:30 /var/run/pluto/ipsec.info
-rw-r--r-- 1 root root 113 2011-12-21 04:30 /var/run/pluto/ipsec.info
-rw-r--r-- 1 root root 113 2011-12-21 04:30 /var/run/pluto/ipsec.info
-rw-r--r-- 1 root root 0 2011-12-21 04:30 /var/run/pluto/ipsec_setup.out
-rw-r--r-- 1 root root 0 2011-12-21 04:30 /var/run/pluto/ipsec_setup.out
-rw-r--r-- 1 root root 27 2011-12-21 04:30 /var/run/pluto/ipsec_setup.out
-rw-r--r-- 1 root root 113 2011-12-21 04:30 /var/run/pluto/ipsec.info
-rw-r--r-- 1 root root 113 2011-12-21 04:30 /var/run/pluto/ipsec.info
-rw-r--r-- 1 root root 113 2011-12-21 04:30 /var/run/pluto/ipsec.info
-r--r--r-- 1 root root 6 2011-12-21 04:30 /var/run/pluto/pluto.pid
-r--r--r-- 1 root root 6 2011-12-21 04:30 /var/run/pluto/pluto.pid
-r--r--r-- 1 root root 6 2011-12-21 04:30 /var/run/pluto/pluto.pid
-rw-r--r-- 1 root root 2 2011-12-21 04:30 /var/run/pluto/ipsec_setup.st
-rw-r--r-- 1 root root 2 2011-12-21 04:30 /var/run/pluto/ipsec_setup.st
-rw-r--r-- 1 root root 2 2011-12-21 04:30 /var/run/pluto/ipsec_setup.st
-rw-r--r-- 1 root root 2 2011-12-21 04:30 /var/run/pluto/ipsec_setup.st
-rw-r--r-- 1 root root 27 2011-12-21 04:30 /var/run/pluto/ipsec_setup.out
-rw-r--r-- 1 root root 2 2011-12-21 04:30 /var/run/pluto/ipsec_setup.st
-rw-r--r-- 1 root root 27 2011-12-21 04:30 /var/run/pluto/ipsec_setup.out
-rw-r--r-- 1 root root 27 2011-12-21 04:30 /var/run/pluto/ipsec_setup.out
-rw-r--r-- 1 root root 27 2011-12-21 04:30 /var/run/pluto/ipsec_setup.out
--- End Message ---