LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 02-05-2016, 12:03 PM   #1
ballsystemlord
Member
 
Registered: Aug 2014
Distribution: Devuan
Posts: 214

Rep: Reputation: Disabled
Many editors vulnerable to ln attack


A discussion started on the nano devel mailing list about the option --nofollow. Ideally, this prohibits the editor from writing to a file referenced by a symlink.
At first it seems nobody was concerned about the problem, but I and one other gentleman pointed out that in a shared dir, root writing to a file that is changed, mid edit, to a symlink would pose a significant security problem.
Many editors warn if a file has changed, but in the age of race conditions, can you really tell how it changes between the time you hit save and the time it actually writes out to disk?
My question is, where should we go from here. Is this a real problem, or am I getting excited about nothing?
 
Old 02-06-2016, 06:22 AM   #2
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
Ancient problem. There's plenty of examples resulting in arbitrarily overwriting files. As for how to move forward maybe start by reading comments here.
 
1 members found this post helpful.
Old 02-06-2016, 06:55 AM   #3
syg00
LQ Veteran
 
Registered: Aug 2003
Location: Australia
Distribution: Lots ...
Posts: 21,129

Rep: Reputation: 4121Reputation: 4121Reputation: 4121Reputation: 4121Reputation: 4121Reputation: 4121Reputation: 4121Reputation: 4121Reputation: 4121Reputation: 4121Reputation: 4121
Fixable since 3.6 - see the manpage for proc, look for protected_symlinks
 
1 members found this post helpful.
Old 04-04-2016, 01:19 PM   #4
ballsystemlord
Member
 
Registered: Aug 2014
Distribution: Devuan
Posts: 214

Original Poster
Rep: Reputation: Disabled
[SOLVED] Many editors vulnerable to ln attack

Thanks for the links, is there a general CVE or similar, for the linux kernel alerting people that this attack was possible?
 
Old 04-05-2016, 07:08 AM   #5
sundialsvcs
LQ Guru
 
Registered: Feb 2004
Location: SE Tennessee, USA
Distribution: Gentoo, LFS
Posts: 10,659
Blog Entries: 4

Rep: Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941
It's always been possible ... but, that is why we invented symlinks!

To me, this sort of scenario becomes rather farfetched. It presupposes the existence of a rogue process that knows what you are doing and that contravenes that intention in a certain way and at a certain time. It also conveniently presupposes that the root user is the one whose activities are being interfered with, in this very-certain way. To me, this "vulnerability" is truly hypothetical.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
[SOLVED] simulating blackhole attack and wormhole attack in ns-2 aditijigyasi Linux - Newbie 7 07-04-2016 08:50 AM
Linux image editors, video editors, audio editors, designing programs? vieya Linux - Software 3 12-06-2009 10:02 AM
How vulnerable am I? BobNutfield Linux - Security 6 04-05-2008 11:07 AM
Boeing's New 787 May Be Vulnerable to Hacker Attack frenchn00b General 20 02-16-2008 03:45 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 12:08 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration