Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2024-23301

Опубликовано: 13 янв. 2024
Источник: redhat
CVSS3: 5.5
EPSS Низкий

Описание

Relax-and-Recover (aka ReaR) through 2.7 creates a world-readable initrd when using GRUB_RESCUE=y. This allows local attackers to gain access to system secrets otherwise only readable by root.

A vulnerability has been identified in Relax-and-Recover (ReaR), where the use of GRUB_RESCUE=y results in the creation of an initrd that is readable by anyone. This flaw could potentially enable local attackers to obtain access to system secrets that are typically restricted to root privileges.

Отчет

A moderate security concern has been identified in Relax-and-Recover (ReaR), particularly when the non-default configuration GRUB_RESCUE=y is used within Red Hat Enterprise Linux (RHEL). This setting results in the creation of a world-readable initrd, potentially providing local attackers an avenue to access system secrets usually restricted to root privileges. It's worth noting that the default initrd created by ReaR does not contain secrets.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6rearOut of support scope
Red Hat Enterprise Linux 7rearOut of support scope
Red Hat Enterprise Linux 8rearFixedRHSA-2024:171909.04.2024
Red Hat Enterprise Linux 9rearFixedRHSA-2024:114705.03.2024

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-359
https://bugzilla.redhat.com/show_bug.cgi?id=2258396rear: creates a world-readable initrd

EPSS

Процентиль: 26%
0.00088
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 1 года назад

Relax-and-Recover (aka ReaR) through 2.7 creates a world-readable initrd when using GRUB_RESCUE=y. This allows local attackers to gain access to system secrets otherwise only readable by root.

CVSS3: 5.5
nvd
больше 1 года назад

Relax-and-Recover (aka ReaR) through 2.7 creates a world-readable initrd when using GRUB_RESCUE=y. This allows local attackers to gain access to system secrets otherwise only readable by root.

CVSS3: 5.5
debian
больше 1 года назад

Relax-and-Recover (aka ReaR) through 2.7 creates a world-readable init ...

suse-cvrf
больше 1 года назад

Security update for rear27a

suse-cvrf
больше 1 года назад

Security update for rear1172a

EPSS

Процентиль: 26%
0.00088
Низкий

5.5 Medium

CVSS3