First published: Sat Nov 23 2013(Updated: )
util-linux/mdev.c in BusyBox before 1.21.0 uses 0777 permissions for parent directories when creating nested directories under /dev/, which allows local users to have unknown impact and attack vectors.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Redhat Enterprise Linux | =6.0 | |
T-mobile Tm-ac1900 | =3.0.0.4.376_3169 | |
Busybox Busybox | <=1.20.2 | |
Busybox Busybox | =0.38 | |
Busybox Busybox | =0.39 | |
Busybox Busybox | =0.40 | |
Busybox Busybox | =0.41 | |
Busybox Busybox | =0.42 | |
Busybox Busybox | =0.43 | |
Busybox Busybox | =0.45 | |
Busybox Busybox | =0.46 | |
Busybox Busybox | =0.47 | |
Busybox Busybox | =0.48 | |
Busybox Busybox | =0.49 | |
Busybox Busybox | =0.50 | |
Busybox Busybox | =0.51 | |
Busybox Busybox | =0.52 | |
Busybox Busybox | =0.60.0 | |
Busybox Busybox | =0.60.1 | |
Busybox Busybox | =0.60.2 | |
Busybox Busybox | =0.60.3 | |
Busybox Busybox | =0.60.4 | |
Busybox Busybox | =0.60.5 | |
Busybox Busybox | =1.00 | |
Busybox Busybox | =1.01 | |
Busybox Busybox | =1.1.0 | |
Busybox Busybox | =1.1.1 | |
Busybox Busybox | =1.1.2 | |
Busybox Busybox | =1.1.3 | |
Busybox Busybox | =1.2.0 | |
Busybox Busybox | =1.2.1 | |
Busybox Busybox | =1.2.2 | |
Busybox Busybox | =1.2.2.1 | |
Busybox Busybox | =1.3.0 | |
Busybox Busybox | =1.3.1 | |
Busybox Busybox | =1.3.2 | |
Busybox Busybox | =1.4.0 | |
Busybox Busybox | =1.4.1 | |
Busybox Busybox | =1.4.2 | |
Busybox Busybox | =1.5.0 | |
Busybox Busybox | =1.5.1 | |
Busybox Busybox | =1.6.0 | |
Busybox Busybox | =1.6.1 | |
Busybox Busybox | =1.7.0 | |
Busybox Busybox | =1.7.1 | |
Busybox Busybox | =1.7.2 | |
Busybox Busybox | =1.7.3 | |
Busybox Busybox | =1.8.0 | |
Busybox Busybox | =1.8.1 | |
Busybox Busybox | =1.8.2 | |
Busybox Busybox | =1.9.0 | |
Busybox Busybox | =1.9.1 | |
Busybox Busybox | =1.9.2 | |
Busybox Busybox | =1.10.0 | |
Busybox Busybox | =1.10.1 | |
Busybox Busybox | =1.10.2 | |
Busybox Busybox | =1.10.3 | |
Busybox Busybox | =1.10.4 | |
Busybox Busybox | =1.11.0 | |
Busybox Busybox | =1.11.1 | |
Busybox Busybox | =1.11.2 | |
Busybox Busybox | =1.11.3 | |
Busybox Busybox | =1.12.0 | |
Busybox Busybox | =1.12.1 | |
Busybox Busybox | =1.12.2 | |
Busybox Busybox | =1.12.3 | |
Busybox Busybox | =1.12.4 | |
Busybox Busybox | =1.13.0 | |
Busybox Busybox | =1.13.1 | |
Busybox Busybox | =1.13.2 | |
Busybox Busybox | =1.13.3 | |
Busybox Busybox | =1.13.4 | |
Busybox Busybox | =1.14.0 | |
Busybox Busybox | =1.14.1 | |
Busybox Busybox | =1.14.2 | |
Busybox Busybox | =1.14.3 | |
Busybox Busybox | =1.14.4 | |
Busybox Busybox | =1.15.0 | |
Busybox Busybox | =1.15.1 | |
Busybox Busybox | =1.15.2 | |
Busybox Busybox | =1.15.3 | |
Busybox Busybox | =1.16.0 | |
Busybox Busybox | =1.16.1 | |
Busybox Busybox | =1.16.2 | |
Busybox Busybox | =1.17.0 | |
Busybox Busybox | =1.17.1 | |
Busybox Busybox | =1.17.2 | |
Busybox Busybox | =1.17.3 | |
Busybox Busybox | =1.17.4 | |
Busybox Busybox | =1.18.0 | |
Busybox Busybox | =1.18.1 | |
Busybox Busybox | =1.18.2 | |
Busybox Busybox | =1.18.3 | |
Busybox Busybox | =1.18.4 | |
Busybox Busybox | =1.18.5 | |
Busybox Busybox | =1.19.0 | |
Busybox Busybox | =1.19.2 | |
Busybox Busybox | =1.19.3 | |
Busybox Busybox | =1.19.4 | |
Busybox Busybox | =1.20.0 | |
Busybox Busybox | =1.20.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.