First published: Thu Mar 12 2009(Updated: )
Sun xVM VirtualBox 2.0.0, 2.0.2, 2.0.4, 2.0.6r39760, 2.1.0, 2.1.2, and 2.1.4r42893 on Linux allows local users to gain privileges via a hardlink attack, which preserves setuid/setgid bits on Linux, related to DT_RPATH:$ORIGIN.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sun xVM VirtualBox | =2.0.0 | |
Sun xVM VirtualBox | =2.0.2 | |
Sun xVM VirtualBox | =2.0.4 | |
Sun xVM VirtualBox | =2.0.6r39760 | |
Sun xVM VirtualBox | =2.1.0 | |
Sun xVM VirtualBox | =2.1.2 | |
Sun xVM VirtualBox | =2.1.4r42893 | |
Linux Kernel |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-0876 allows local users to gain elevated privileges through a hardlink attack on vulnerable versions of Sun xVM VirtualBox.
CVE-2009-0876 affects Sun xVM VirtualBox versions 2.0.0, 2.0.2, 2.0.4, 2.0.6r39760, 2.1.0, 2.1.2, and 2.1.4r42893.
To mitigate CVE-2009-0876, ensure that you update to a version of Sun xVM VirtualBox that is not vulnerable.
Yes, the best way to address CVE-2009-0876 is to apply the appropriate patches from Sun to eliminate the vulnerability.
CVE-2009-0876 could facilitate local privilege escalation attacks due to the vulnerabilities in the handling of hardlinks.