log.c in Squid Analysis Report Generator (sarg) through 2.3.11 allows...
Vulnerability Description
log.c in Squid Analysis Report Generator (sarg) through 2.3.11 allows local privilege escalation. By default, it uses a fixed temporary directory /tmp/sarg. As the root user, sarg creates this directory or reuses an existing one in an insecure manner. An attacker can pre-create the directory, and place symlinks in it (after winning a /tmp/sarg/denied.int_unsort race condition). The outcome will be corrupted or newly created files in privileged file system locations.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2019-18932
Credits & Attribution
No credits recorded in the NVD database.
References
- https://bugzilla.suse.com/show_bug.cgi?id=1150554
- https://sourceforge.net/projects/sarg/
- http://www.openwall.com/lists/oss-security/2020/01/20/6
- http://www.openwall.com/lists/oss-security/2020/01/20/6
- https://seclists.org/oss-sec/2020/q1/23
- http://www.openwall.com/lists/oss-security/2020/01/27/1
- http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00051.html
- http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00063.html
- https://security.gentoo.org/glsa/202007-32
Affected Vendor
squid analysis report generator project
View all reports →Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.