Executive Summary

Informations
Name CVE-2007-3852 First vendor Publication 2007-08-14
Vendor Cve Last vendor Modification 2024-11-21

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:L/AC:M/Au:N/C:P/I:P/A:P)
Cvss Base Score 4.4 Attack Range Local
Cvss Impact Score 6.4 Attack Complexity Medium
Cvss Expoit Score 3.4 Authentication None Required
Calculate full CVSS 2.0 Vectors scores

Detail

The init script (sysstat.in) in sysstat 5.1.2 up to 7.1.6 creates /tmp/sysstat.run insecurely, which allows local users to execute arbitrary code.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3852

CWE : Common Weakness Enumeration

% Id Name
100 % CWE-264 Permissions, Privileges, and Access Controls

OVAL Definitions

Definition Id: oval:org.mitre.oval:def:22033
 
Oval ID: oval:org.mitre.oval:def:22033
Title: RHSA-2011:1005: sysstat security, bug fix, and enhancement update (Low)
Description: The init script (sysstat.in) in sysstat 5.1.2 up to 7.1.6 creates /tmp/sysstat.run insecurely, which allows local users to execute arbitrary code.
Family: unix Class: patch
Reference(s): RHSA-2011:1005-01
CESA-2011:1005
CVE-2007-3852
Version: 4
Platform(s): Red Hat Enterprise Linux 5
CentOS Linux 5
Product(s): sysstat
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:23324
 
Oval ID: oval:org.mitre.oval:def:23324
Title: ELSA-2011:1005: sysstat security, bug fix, and enhancement update (Low)
Description: The init script (sysstat.in) in sysstat 5.1.2 up to 7.1.6 creates /tmp/sysstat.run insecurely, which allows local users to execute arbitrary code.
Family: unix Class: patch
Reference(s): ELSA-2011:1005-01
CVE-2007-3852
Version: 6
Platform(s): Oracle Linux 5
Product(s): sysstat
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:28059
 
Oval ID: oval:org.mitre.oval:def:28059
Title: DEPRECATED: ELSA-2011-1005 -- sysstat security, bug fix, and enhancement update (low)
Description: [7.0.2-11] - Related: #716959 fix cve-2007-3852 - sysstat insecure temporary file usage [7.0.2-10] - Resolves: #716959 fix cve-2007-3852 - sysstat insecure temporary file usage [7.0.2-9] - Related: #622557 sar interrupt count goes backward [7.0.2-8] - Resolves: #694767 iostat doesn't report statistics for shares with long names - Related: #703095 iostat -n - values in output overflows - problem with long device names on i386 [7.0.2-7] - Resolves: #706095 iostat -n - values in output overflows [7.0.2-6] - Resolves: #696672 cifsstat resource leak [7.0.2-5] - Resolves: #604637 extraneous newline in iostat report for long device names - Resolves: #630559 'sar -P ALL -f xxxx' does not display activity information - Resolves: #591530 add cifsiostat tool - Resolves: #598794 Enable parametrization of sadc arguments - Resolves: #675058 iostat: bogus value appears when device is unmounted/mounted - Resolves: #622557 sar interrupt count goes backward [7.0.2-4] - Resolves: #454617 Though function write() executed sucessful, sadc end with an error - Resolves: #468340 The output of sar -I ALL/XALL is wrong in ia64 machine of RHEL5 - Resolves: #517490 The 'sar -d ' command outputs invalid data - Resolves: #578929 March sar data was appended to February data - Resolves: #579409 The sysstat's programs such as mpstat shows one extra cpu - Resolves: #484439 iostat -n enhancement not report NFS client stats correctly
Family: unix Class: patch
Reference(s): ELSA-2011-1005
CVE-2007-3852
Version: 4
Platform(s): Oracle Linux 5
Product(s): sysstat
Definition Synopsis:

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 21

OpenVAS Exploits

Date Description
2012-07-30 Name : CentOS Update for sysstat CESA-2011:1005 centos5 x86_64
File : nvt/gb_CESA-2011_1005_sysstat_centos5_x86_64.nasl
2011-09-23 Name : CentOS Update for sysstat CESA-2011:1005 centos5 i386
File : nvt/gb_CESA-2011_1005_sysstat_centos5_i386.nasl
2011-07-22 Name : RedHat Update for sysstat RHSA-2011:1005-01
File : nvt/gb_RHSA-2011_1005-01_sysstat.nasl
2009-02-27 Name : Fedora Update for sysstat FEDORA-2007-1697
File : nvt/gb_fedora_2007_1697_sysstat_fc7.nasl

Open Source Vulnerability Database (OSVDB)

Id Description
39709 Sysstat systat.in /tmp/sysstat.run Symlink Local Privilege Escalation

Nessus® Vulnerability Scanner

Date Description
2012-08-01 Name : The remote Scientific Linux host is missing a security update.
File : sl_20110721_sysstat_on_SL5_x.nasl - Type : ACT_GATHER_INFO
2011-09-23 Name : The remote CentOS host is missing a security update.
File : centos_RHSA-2011-1005.nasl - Type : ACT_GATHER_INFO
2011-07-22 Name : The remote Red Hat host is missing a security update.
File : redhat-RHSA-2011-1005.nasl - Type : ACT_GATHER_INFO
2007-11-06 Name : The remote Fedora host is missing a security update.
File : fedora_2007-1697.nasl - Type : ACT_GATHER_INFO
2007-08-28 Name : The remote Fedora Core host is missing a security update.
File : fedora_2007-675.nasl - Type : ACT_GATHER_INFO

Sources (Detail)

http://osvdb.org/39709
http://secunia.com/advisories/26527
http://www.redhat.com/support/errata/RHSA-2011-1005.html
http://www.securityfocus.com/bid/25380
https://bugs.gentoo.org/show_bug.cgi?id=188808
https://exchange.xforce.ibmcloud.com/vulnerabilities/36045
Source Url

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
8
9
10
11
Date Informations
2024-11-28 23:16:34
  • Multiple Updates
2024-11-28 12:12:58
  • Multiple Updates
2023-02-13 09:29:26
  • Multiple Updates
2023-02-02 21:28:59
  • Multiple Updates
2021-05-04 12:06:08
  • Multiple Updates
2021-04-22 01:06:41
  • Multiple Updates
2020-05-23 00:20:08
  • Multiple Updates
2017-07-29 12:02:24
  • Multiple Updates
2016-06-28 16:45:38
  • Multiple Updates
2016-04-26 16:23:14
  • Multiple Updates
2014-02-17 10:40:57
  • Multiple Updates
2013-05-11 10:31:52
  • Multiple Updates