Bug 959132 (CVE-2015-1336) - VUL-0: CVE-2015-1336: man: TOCTOU bug when processing catman pages
Summary: VUL-0: CVE-2015-1336: man: TOCTOU bug when processing catman pages
Status: RESOLVED INVALID
Alias: CVE-2015-1336
Product: SUSE Security Incidents
Classification: Novell Products
Component: Incidents (show other bugs)
Version: unspecified
Hardware: Other Other
: P5 - None : Normal
Target Milestone: ---
Assignee: Dr. Werner Fink
QA Contact: Security Team bot
URL: https://smash.suse.de/issue/159809/
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2015-12-15 08:23 UTC by Marcus Meissner
Modified: 2015-12-15 08:24 UTC (History)
1 user (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Marcus Meissner 2015-12-15 08:23:49 UTC
CVE-2015-1336

http://www.halfdog.net/Security/2015/MandbSymlinkLocalRootPrivilegeEscalation/

 Problem description:

The daily mandb cleanup job for old catman pages changes the permissions of all non-man files to user man. This happens e.g. under Ubuntu Vivid with /etc/cron.daily/man-db when systemd is not installed (/run/systemd/system does not exist). The problematic code is ... 



References:
http://seclists.org/oss-sec/2015/q4/490
Comment 1 Marcus Meissner 2015-12-15 08:24:49 UTC
bin/addnote CVE-2015-1336 "SUSE uses a non-worldwritable setup for catman pages and is not affected by this problem."