Security Advisory Moderate: systemtap security update

Advisory: RHSA-2009:0373-1
Type: Security Advisory
Severity: Moderate
Issued on: 2009-03-26
Last updated on: 2009-03-26
Affected Products: Red Hat Desktop (v. 4)
Red Hat Enterprise Linux (v. 5 server)
Red Hat Enterprise Linux AS (v. 4)
Red Hat Enterprise Linux AS (v. 4.7.z)
Red Hat Enterprise Linux Desktop (v. 5 client)
Red Hat Enterprise Linux ES (v. 4)
Red Hat Enterprise Linux ES (v. 4.7.z)
Red Hat Enterprise Linux EUS (v. 5.3.z server)
Red Hat Enterprise Linux WS (v. 4)
OVAL: com.redhat.rhsa-20090373.xml
CVEs (cve.mitre.org): CVE-2009-0784

Details

Updated systemtap packages that fix a security issue are now available for
Red Hat Enterprise Linux 4 and 5.

This update has been rated as having moderate security impact by the Red
Hat Security Response Team.

SystemTap is an instrumentation infrastructure for systems running version
2.6 of the Linux kernel. SystemTap scripts can collect system operations
data, greatly simplifying information gathering. Collected data can then
assist in performance measuring, functional testing, and performance and
function problem diagnosis.

A race condition was discovered in SystemTap that could allow users in the
stapusr group to elevate privileges to that of members of the stapdev group
(and hence root), bypassing directory confinement restrictions and allowing
them to insert arbitrary SystemTap kernel modules. (CVE-2009-0784)

Note: This issue was only exploitable if another SystemTap kernel module
was placed in the "systemtap/" module directory for the currently running
kernel.

Red Hat would like to thank Erik Sjölund for reporting this issue.

SystemTap users should upgrade to these updated packages, which contain a
backported patch to correct this issue.


Solution

Before applying this update, make sure that all previously-released
errata relevant to your system have been applied.

This update is available via Red Hat Network. Details on how to use
the Red Hat Network to apply this update are available at
http://kbase.redhat.com/faq/docs/DOC-11259

Updated packages

Red Hat Desktop (v. 4)

SRPMS:
systemtap-0.6.2-2.el4_7.src.rpm     7f1a6b77b7b58d3df8315142adab2bba
 
IA-32:
systemtap-0.6.2-2.el4_7.i386.rpm     e21b17dbaaa8732890f0c264e4097fb0
systemtap-runtime-0.6.2-2.el4_7.i386.rpm     029dd96722e830bb5d6c711496ea4d07
systemtap-testsuite-0.6.2-2.el4_7.i386.rpm     7b770258c507135b4e29d3ce8113dee7
 
x86_64:
systemtap-0.6.2-2.el4_7.x86_64.rpm     bfa19250ade09f48229c3b642c920cd2
systemtap-runtime-0.6.2-2.el4_7.x86_64.rpm     eb6ceb515ac65795404fb313e1251c84
systemtap-testsuite-0.6.2-2.el4_7.x86_64.rpm     6cfad7e7c0de1a05c022c8102ea9ea0f
 
Red Hat Enterprise Linux (v. 5 server)

SRPMS:
systemtap-0.7.2-3.el5_3.src.rpm
File outdated by:  RHBA-2009:1313
    df973b37718b492c80a1dbc63e78ac73
 
IA-32:
systemtap-0.7.2-3.el5_3.i386.rpm
File outdated by:  RHBA-2009:1313
    4e70320dffd3e2f86ed1cb51edbe27c2
systemtap-client-0.7.2-3.el5_3.i386.rpm
File outdated by:  RHBA-2009:1313
    796cd4a97cfbc2f1c2907be8b3978cc5
systemtap-runtime-0.7.2-3.el5_3.i386.rpm
File outdated by:  RHBA-2009:1313
    2c5164d6b0a95e051aa83d54a1c8887e
systemtap-server-0.7.2-3.el5_3.i386.rpm
File outdated by:  RHBA-2009:1313
    79c004f16be74ba13a149db0d974528b
systemtap-testsuite-0.7.2-3.el5_3.i386.rpm
File outdated by:  RHBA-2009:1313
    0dc7481b984b04f040c9da43077459bb
 
IA-64:
systemtap-0.7.2-3.el5_3.ia64.rpm
File outdated by:  RHBA-2009:1313
    d1c59cd212efb38b23d4128bd7abed31
systemtap-client-0.7.2-3.el5_3.ia64.rpm
File outdated by:  RHBA-2009:1313
    6f82a36d72bfbdc854cde9c62ce0e571
systemtap-runtime-0.7.2-3.el5_3.ia64.rpm
File outdated by:  RHBA-2009:1313
    67e9a6fa8a410b165e820181eed92ec1
systemtap-server-0.7.2-3.el5_3.ia64.rpm
File outdated by:  RHBA-2009:1313
    eeadd183af9c998c93639fb47be2c7a4
systemtap-testsuite-0.7.2-3.el5_3.ia64.rpm
File outdated by:  RHBA-2009:1313
    70583065f98dc3ea2eee0140bdaaf792
 
PPC:
systemtap-0.7.2-3.el5_3.ppc64.rpm
File outdated by:  RHBA-2009:1313
    5f70af9f5836c90e50907e3ee81d225f
systemtap-client-0.7.2-3.el5_3.ppc64.rpm
File outdated by:  RHBA-2009:1313
    f965e55fee9bde3dba04d7dfa354b313
systemtap-runtime-0.7.2-3.el5_3.ppc64.rpm
File outdated by:  RHBA-2009:1313
    6cb2cffbc541f32fc90fc4ce33c771e8
systemtap-server-0.7.2-3.el5_3.ppc64.rpm
File outdated by:  RHBA-2009:1313
    2918914c7c83940b953852d02cd129fb
systemtap-testsuite-0.7.2-3.el5_3.ppc64.rpm
File outdated by:  RHBA-2009:1313
    a04ea22a4853a7d5df0311303c96c333
 
s390x:
systemtap-0.7.2-3.el5_3.s390x.rpm
File outdated by:  RHBA-2009:1313
    c9204aa2258e801bb9184e760f1138cf
systemtap-client-0.7.2-3.el5_3.s390x.rpm
File outdated by:  RHBA-2009:1313
    bc3954dbfc1c202dec01417d6278a59c
systemtap-runtime-0.7.2-3.el5_3.s390x.rpm
File outdated by:  RHBA-2009:1313
    65976b76f44486d34503f3d9cb626b84
systemtap-server-0.7.2-3.el5_3.s390x.rpm
File outdated by:  RHBA-2009:1313
    d10cf0391b0dbb2105c9e094d12f64ec
systemtap-testsuite-0.7.2-3.el5_3.s390x.rpm
File outdated by:  RHBA-2009:1313
    4c7a09112eb82e42bc4df9f3d353d892
 
x86_64:
systemtap-0.7.2-3.el5_3.x86_64.rpm
File outdated by:  RHBA-2009:1313
    db32d4d1ffef61b584e92921514241cf
systemtap-client-0.7.2-3.el5_3.x86_64.rpm
File outdated by:  RHBA-2009:1313
    2c2955b0c3297202adefa6ff9a7ed843
systemtap-runtime-0.7.2-3.el5_3.x86_64.rpm
File outdated by:  RHBA-2009:1313
    783c69b3c1d197410cf4c7b0cf35faa0
systemtap-server-0.7.2-3.el5_3.x86_64.rpm
File outdated by:  RHBA-2009:1313
    5283612ac792816db24b1b6b4c5f2671
systemtap-testsuite-0.7.2-3.el5_3.x86_64.rpm
File outdated by:  RHBA-2009:1313
    92abda7fdbec3193e58173b1e7b765eb
 
Red Hat Enterprise Linux AS (v. 4)

SRPMS:
systemtap-0.6.2-2.el4_7.src.rpm     7f1a6b77b7b58d3df8315142adab2bba
 
IA-32:
systemtap-0.6.2-2.el4_7.i386.rpm     e21b17dbaaa8732890f0c264e4097fb0
systemtap-runtime-0.6.2-2.el4_7.i386.rpm     029dd96722e830bb5d6c711496ea4d07
systemtap-testsuite-0.6.2-2.el4_7.i386.rpm     7b770258c507135b4e29d3ce8113dee7
 
IA-64:
systemtap-0.6.2-2.el4_7.ia64.rpm     dfe0bc6f33375e0b326382d01c9e717b
systemtap-runtime-0.6.2-2.el4_7.ia64.rpm     716c582e4ae21b6484247b11a9a5b6c6
systemtap-testsuite-0.6.2-2.el4_7.ia64.rpm     2729a9b8f303c343d80344d03bca0a05
 
PPC:
systemtap-0.6.2-2.el4_7.ppc64.rpm     12180f2bafe0249ed1dda14e7a41a1f7
systemtap-runtime-0.6.2-2.el4_7.ppc64.rpm     ee93d737b6169f72acadd735def7655d
systemtap-testsuite-0.6.2-2.el4_7.ppc64.rpm     9c5432aa22bbe45ec3c65893c0719f31
 
x86_64:
systemtap-0.6.2-2.el4_7.x86_64.rpm     bfa19250ade09f48229c3b642c920cd2
systemtap-runtime-0.6.2-2.el4_7.x86_64.rpm     eb6ceb515ac65795404fb313e1251c84
systemtap-testsuite-0.6.2-2.el4_7.x86_64.rpm     6cfad7e7c0de1a05c022c8102ea9ea0f
 
Red Hat Enterprise Linux AS (v. 4.7.z)

SRPMS:
systemtap-0.6.2-2.el4_7.src.rpm     7f1a6b77b7b58d3df8315142adab2bba
 
IA-32:
systemtap-0.6.2-2.el4_7.i386.rpm     e21b17dbaaa8732890f0c264e4097fb0
systemtap-runtime-0.6.2-2.el4_7.i386.rpm     029dd96722e830bb5d6c711496ea4d07
systemtap-testsuite-0.6.2-2.el4_7.i386.rpm     7b770258c507135b4e29d3ce8113dee7
 
IA-64:
systemtap-0.6.2-2.el4_7.ia64.rpm     dfe0bc6f33375e0b326382d01c9e717b
systemtap-runtime-0.6.2-2.el4_7.ia64.rpm     716c582e4ae21b6484247b11a9a5b6c6
systemtap-testsuite-0.6.2-2.el4_7.ia64.rpm     2729a9b8f303c343d80344d03bca0a05
 
PPC:
systemtap-0.6.2-2.el4_7.ppc64.rpm     12180f2bafe0249ed1dda14e7a41a1f7
systemtap-runtime-0.6.2-2.el4_7.ppc64.rpm     ee93d737b6169f72acadd735def7655d
systemtap-testsuite-0.6.2-2.el4_7.ppc64.rpm     9c5432aa22bbe45ec3c65893c0719f31
 
x86_64:
systemtap-0.6.2-2.el4_7.x86_64.rpm     bfa19250ade09f48229c3b642c920cd2
systemtap-runtime-0.6.2-2.el4_7.x86_64.rpm     eb6ceb515ac65795404fb313e1251c84
systemtap-testsuite-0.6.2-2.el4_7.x86_64.rpm     6cfad7e7c0de1a05c022c8102ea9ea0f
 
Red Hat Enterprise Linux Desktop (v. 5 client)

SRPMS:
systemtap-0.7.2-3.el5_3.src.rpm
File outdated by:  RHBA-2009:1313
    df973b37718b492c80a1dbc63e78ac73
 
IA-32:
systemtap-0.7.2-3.el5_3.i386.rpm
File outdated by:  RHBA-2009:1313
    4e70320dffd3e2f86ed1cb51edbe27c2
systemtap-client-0.7.2-3.el5_3.i386.rpm
File outdated by:  RHBA-2009:1313
    796cd4a97cfbc2f1c2907be8b3978cc5
systemtap-runtime-0.7.2-3.el5_3.i386.rpm
File outdated by:  RHBA-2009:1313
    2c5164d6b0a95e051aa83d54a1c8887e
systemtap-server-0.7.2-3.el5_3.i386.rpm
File outdated by:  RHBA-2009:1313
    79c004f16be74ba13a149db0d974528b
systemtap-testsuite-0.7.2-3.el5_3.i386.rpm
File outdated by:  RHBA-2009:1313
    0dc7481b984b04f040c9da43077459bb
 
x86_64:
systemtap-0.7.2-3.el5_3.x86_64.rpm
File outdated by:  RHBA-2009:1313
    db32d4d1ffef61b584e92921514241cf
systemtap-client-0.7.2-3.el5_3.x86_64.rpm
File outdated by:  RHBA-2009:1313
    2c2955b0c3297202adefa6ff9a7ed843
systemtap-runtime-0.7.2-3.el5_3.x86_64.rpm
File outdated by:  RHBA-2009:1313
    783c69b3c1d197410cf4c7b0cf35faa0
systemtap-server-0.7.2-3.el5_3.x86_64.rpm
File outdated by:  RHBA-2009:1313
    5283612ac792816db24b1b6b4c5f2671
systemtap-testsuite-0.7.2-3.el5_3.x86_64.rpm
File outdated by:  RHBA-2009:1313
    92abda7fdbec3193e58173b1e7b765eb
 
Red Hat Enterprise Linux ES (v. 4)

SRPMS:
systemtap-0.6.2-2.el4_7.src.rpm     7f1a6b77b7b58d3df8315142adab2bba
 
IA-32:
systemtap-0.6.2-2.el4_7.i386.rpm     e21b17dbaaa8732890f0c264e4097fb0
systemtap-runtime-0.6.2-2.el4_7.i386.rpm     029dd96722e830bb5d6c711496ea4d07
systemtap-testsuite-0.6.2-2.el4_7.i386.rpm     7b770258c507135b4e29d3ce8113dee7
 
IA-64:
systemtap-0.6.2-2.el4_7.ia64.rpm     dfe0bc6f33375e0b326382d01c9e717b
systemtap-runtime-0.6.2-2.el4_7.ia64.rpm     716c582e4ae21b6484247b11a9a5b6c6
systemtap-testsuite-0.6.2-2.el4_7.ia64.rpm     2729a9b8f303c343d80344d03bca0a05
 
x86_64:
systemtap-0.6.2-2.el4_7.x86_64.rpm     bfa19250ade09f48229c3b642c920cd2
systemtap-runtime-0.6.2-2.el4_7.x86_64.rpm     eb6ceb515ac65795404fb313e1251c84
systemtap-testsuite-0.6.2-2.el4_7.x86_64.rpm     6cfad7e7c0de1a05c022c8102ea9ea0f
 
Red Hat Enterprise Linux ES (v. 4.7.z)

SRPMS:
systemtap-0.6.2-2.el4_7.src.rpm     7f1a6b77b7b58d3df8315142adab2bba
 
IA-32:
systemtap-0.6.2-2.el4_7.i386.rpm     e21b17dbaaa8732890f0c264e4097fb0
systemtap-runtime-0.6.2-2.el4_7.i386.rpm     029dd96722e830bb5d6c711496ea4d07
systemtap-testsuite-0.6.2-2.el4_7.i386.rpm     7b770258c507135b4e29d3ce8113dee7
 
IA-64:
systemtap-0.6.2-2.el4_7.ia64.rpm     dfe0bc6f33375e0b326382d01c9e717b
systemtap-runtime-0.6.2-2.el4_7.ia64.rpm     716c582e4ae21b6484247b11a9a5b6c6
systemtap-testsuite-0.6.2-2.el4_7.ia64.rpm     2729a9b8f303c343d80344d03bca0a05
 
x86_64:
systemtap-0.6.2-2.el4_7.x86_64.rpm     bfa19250ade09f48229c3b642c920cd2
systemtap-runtime-0.6.2-2.el4_7.x86_64.rpm     eb6ceb515ac65795404fb313e1251c84
systemtap-testsuite-0.6.2-2.el4_7.x86_64.rpm     6cfad7e7c0de1a05c022c8102ea9ea0f
 
Red Hat Enterprise Linux EUS (v. 5.3.z server)

SRPMS:
systemtap-0.7.2-3.el5_3.src.rpm
File outdated by:  RHBA-2009:1313
    df973b37718b492c80a1dbc63e78ac73
 
IA-32:
systemtap-0.7.2-3.el5_3.i386.rpm     4e70320dffd3e2f86ed1cb51edbe27c2
systemtap-client-0.7.2-3.el5_3.i386.rpm     796cd4a97cfbc2f1c2907be8b3978cc5
systemtap-runtime-0.7.2-3.el5_3.i386.rpm     2c5164d6b0a95e051aa83d54a1c8887e
systemtap-server-0.7.2-3.el5_3.i386.rpm     79c004f16be74ba13a149db0d974528b
systemtap-testsuite-0.7.2-3.el5_3.i386.rpm     0dc7481b984b04f040c9da43077459bb
 
IA-64:
systemtap-0.7.2-3.el5_3.ia64.rpm     d1c59cd212efb38b23d4128bd7abed31
systemtap-client-0.7.2-3.el5_3.ia64.rpm     6f82a36d72bfbdc854cde9c62ce0e571
systemtap-runtime-0.7.2-3.el5_3.ia64.rpm     67e9a6fa8a410b165e820181eed92ec1
systemtap-server-0.7.2-3.el5_3.ia64.rpm     eeadd183af9c998c93639fb47be2c7a4
systemtap-testsuite-0.7.2-3.el5_3.ia64.rpm     70583065f98dc3ea2eee0140bdaaf792
 
PPC:
systemtap-0.7.2-3.el5_3.ppc64.rpm     5f70af9f5836c90e50907e3ee81d225f
systemtap-client-0.7.2-3.el5_3.ppc64.rpm     f965e55fee9bde3dba04d7dfa354b313
systemtap-runtime-0.7.2-3.el5_3.ppc64.rpm     6cb2cffbc541f32fc90fc4ce33c771e8
systemtap-server-0.7.2-3.el5_3.ppc64.rpm     2918914c7c83940b953852d02cd129fb
systemtap-testsuite-0.7.2-3.el5_3.ppc64.rpm     a04ea22a4853a7d5df0311303c96c333
 
s390x:
systemtap-0.7.2-3.el5_3.s390x.rpm     c9204aa2258e801bb9184e760f1138cf
systemtap-client-0.7.2-3.el5_3.s390x.rpm     bc3954dbfc1c202dec01417d6278a59c
systemtap-runtime-0.7.2-3.el5_3.s390x.rpm     65976b76f44486d34503f3d9cb626b84
systemtap-server-0.7.2-3.el5_3.s390x.rpm     d10cf0391b0dbb2105c9e094d12f64ec
systemtap-testsuite-0.7.2-3.el5_3.s390x.rpm     4c7a09112eb82e42bc4df9f3d353d892
 
x86_64:
systemtap-0.7.2-3.el5_3.x86_64.rpm     db32d4d1ffef61b584e92921514241cf
systemtap-client-0.7.2-3.el5_3.x86_64.rpm     2c2955b0c3297202adefa6ff9a7ed843
systemtap-runtime-0.7.2-3.el5_3.x86_64.rpm     783c69b3c1d197410cf4c7b0cf35faa0
systemtap-server-0.7.2-3.el5_3.x86_64.rpm     5283612ac792816db24b1b6b4c5f2671
systemtap-testsuite-0.7.2-3.el5_3.x86_64.rpm     92abda7fdbec3193e58173b1e7b765eb
 
Red Hat Enterprise Linux WS (v. 4)

SRPMS:
systemtap-0.6.2-2.el4_7.src.rpm     7f1a6b77b7b58d3df8315142adab2bba
 
IA-32:
systemtap-0.6.2-2.el4_7.i386.rpm     e21b17dbaaa8732890f0c264e4097fb0
systemtap-runtime-0.6.2-2.el4_7.i386.rpm     029dd96722e830bb5d6c711496ea4d07
systemtap-testsuite-0.6.2-2.el4_7.i386.rpm     7b770258c507135b4e29d3ce8113dee7
 
IA-64:
systemtap-0.6.2-2.el4_7.ia64.rpm     dfe0bc6f33375e0b326382d01c9e717b
systemtap-runtime-0.6.2-2.el4_7.ia64.rpm     716c582e4ae21b6484247b11a9a5b6c6
systemtap-testsuite-0.6.2-2.el4_7.ia64.rpm     2729a9b8f303c343d80344d03bca0a05
 
x86_64:
systemtap-0.6.2-2.el4_7.x86_64.rpm     bfa19250ade09f48229c3b642c920cd2
systemtap-runtime-0.6.2-2.el4_7.x86_64.rpm     eb6ceb515ac65795404fb313e1251c84
systemtap-testsuite-0.6.2-2.el4_7.x86_64.rpm     6cfad7e7c0de1a05c022c8102ea9ea0f
 
(The unlinked packages above are only available from the Red Hat Network)

Bugs fixed (see bugzilla for more information)

489808 - CVE-2009-0784 systemtap: race condition leads to privilege escalation


References



These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/