The fix_lookup_id function in sealert in setroubleshoot before 3.2.23 allows...
Vulnerability Description
The fix_lookup_id function in sealert in setroubleshoot before 3.2.23 allows local users to execute arbitrary commands as root by triggering an SELinux denial with a crafted file name, related to executing external commands with the commands.getstatusoutput function.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2016-4445
Credits & Attribution
No credits recorded in the NVD database.
References
- https://rhn.redhat.com/errata/RHSA-2016-1267.html
- https://bugzilla.redhat.com/show_bug.cgi?id=1339183
- http://www.securityfocus.com/bid/91430
- http://www.securitytracker.com/id/1036144
- http://seclists.org/oss-sec/2016/q2/575
- https://github.com/fedora-selinux/setroubleshoot/commit/2d12677629ca319310f6263688bb1b7f676c01b7
More from setroubleshoot project
View All →Affected Vendor
setroubleshoot project
View all reports →Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.