SB2017102602 - Remote code execution in SecureDrop
Published: October 26, 2017
Security Bulletin ID
SB2017102602
CSH Severity
High
Patch available
YES
Number of vulnerabilities
1
Exploitation vector
Remote access
Highest impact
Code execution
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 vulnerability.
1) Man-in-the-middle attack (CVE-ID: N/A)
The vulnerability allows a remote attacker to conduct man-in-the-middle attack.The weakness exists due to improper verification of cryptographic signatures while installation of `tor`, `ntp`, and the `Tor keyring`packages during initial provisioning of the SecureDrop servers. A remote attacker can use man-in-the-middle techniques to connect to apt server and execute arbitrary code on the SecureDrop servers.
Remediation
Install update from vendor's website.