Default set-uid root for perl_startup script - CVE-2016-1531
Published: June 28, 2016 / Updated: September 14, 2018
Vulnerability details
The vulnerability allows a local user to obtain elevated privileges.
The vulnerability exists due to improper default permission for "perl_startup" startup script, which has set-uid root bit. A local user can obtain root privileges on the system.
Successful exploitation of this vulnerability will allow the local attacker to obtain elevated privileges and execute arbitrary commands as root.
Affected software
Debian Linux
Fedora
Opensuse
exim (Alpine package)
exim
How to mitigate CVE-2016-1531
exim - addressed in versions 4.84.2-1.el6, 4.84.2-1.el7, 4.85.2-1.fc22, 4.86.2-1.fc23
Links to Public Exploits and PoC-codes
External References
Related Security Bulletins
- Privilege escalation vulnerability in Exim MTA
- openSUSE update for exim
- Arch Linux update for exim
- Debian update for exim4
- OpenSUSE Linux update for exim
- Default set-uid root for perl_startup script in exim (Alpine package)
- Fedora 23 update for exim
- Fedora 22 update for exim
- Fedora EPEL 7 update for exim
- Fedora EPEL 6 update for exim