CVE-2018-18654: High severity Debian Crossroads vulnerability
Crossroads 2.81 does not properly handle the /tmp directory during a build of xr. A local attacker can first create a world-writable subdirectory in a certain location under the /tmp directory, wait until a user process copies xr there, and then replace the entire contents of this subdirectory to include a Trojan horse xr.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-18654?
CVE-2018-18654 has been classified as a moderate severity vulnerability.
How do I fix CVE-2018-18654?
To fix CVE-2018-18654, ensure that the /tmp directory is not world-writable or limit access to sensitive applications.
Which software versions are affected by CVE-2018-18654?
CVE-2018-18654 affects Crossroads version 2.81 running on Debian.
What type of attack does CVE-2018-18654 facilitate?
CVE-2018-18654 facilitates local privilege escalation by allowing a local attacker to manipulate files in the /tmp directory.
Is CVE-2018-18654 exploited remotely?
No, CVE-2018-18654 requires local access to the system to be exploited.