20030801 SRT2003-08-01-0126 - cdrtools local root exploitmailing list
http://marc.info/?l=bugtraq&m=105978381618095&w=2 CVE-2003-0655
CDRTools 2.0 - RSCSI Debug File Arbitrary Local File Manipulation
Record summary
CVE-2003-0655 has a selected CVSS score of 7.2; EIP currently links 1 catalogued exploit.
Description
rscsi in cdrtools 2.01 and earlier allows local users to overwrite arbitrary files and gain root privileges by specifying the target file as a command line argument, which is modified while rscsi is running with privileges.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBCDRTools 2.0 - RSCSI Debug File Arbitrary Local File ManipulationExploitDB exploitby Secure Network OperationsNot analyzed1 file
References
3secnetops.com
http://www.secnetops.com/research/advisories/SRT2003-08-01-0126.txt nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2003-0655