ELF_CVE20123524.A
May 14, 2016
PLATFORM:
Linux
OVERALL RISK RATING:
DAMAGE POTENTIAL:
DISTRIBUTION POTENTIAL:
REPORTED INFECTION:
INFORMATION EXPOSURE:
Threat Type: Trojan
Destructiveness: No
Encrypted:
In the wild: Yes
TECHNICAL DETAILS
File Size:
13,669 bytes
File Type:
ELF
Initial Samples Received Date:
08 May 2016
Arrival Details
This malware arrives via the following means:
- possibly deployed by a remote malicious user
- possibly downloaded by other malware/grayware
Other Details
This Trojan does the following:
- It takes advantage of CVE-2012-3524 to allows local users to gain privilege and execute arbitrary code via DBUS_SYSTEM_BUS_ADDRESS environment variable