First published: Wed Nov 12 1997(Updated: )
xterm in Digital UNIX 4.0B *with* patch kit 5 allows local users to overwrite arbitrary files via a symlink attack on a core dump file, which is created when xterm is called with a DISPLAY environmental variable set to a display that xterm cannot access.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Digital UNIX | =4.0b |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.