Title : Redhat "capp-lspp-config" Script Privilege Escalation Vulnerability VUPEN ID : VUPEN/ADV-2008-1066 CVE ID : CVE-2008-0884
Rated as : Moderate Risk
Remotely Exploitable : No Locally Exploitable : Yes Release Date : 2008-04-02
Technical Description
A vulnerability has been identified in Red Hat Enterprise Linux 5, which could be exploited by local attackers to gain elevated privileges. This issue is caused by an error in the "capp-lspp-config" script (included with the lspp-eal4-config-ibm and capp-lspp-eal4-config-hp packages) that sets "/etc/pam.d/system-auth" file to world-writable, which could allow malicious and unprivileged users to gain additional access, or to escalate their privileges.
Note: This issue only exists when the affected package is deployed as base system configuration kickstart script.