First published: Tue Jan 09 2001(Updated: )
Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via a symlink attack.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Conectiva Linux | =4.2 | |
Conectiva Linux | =4.1 | |
Conectiva Linux | =5.1 | |
Immunix Immunix | =6.2 | |
Conectiva Linux | =4.0es | |
Conectiva Linux | =5.0 | |
Conectiva Linux | =4.0 | |
Mandrakesoft Mandrake Linux | =7.2 | |
HP HP-UX | =11.11 | |
Mandrakesoft Mandrake Linux | =7.0 | |
Redhat Linux | =6.1 | |
Redhat Linux | =6.2 | |
Mandrakesoft Mandrake Linux | =7.1 | |
Caldera OpenLinux | ||
Redhat Linux | =5.2 | |
Mandrakesoft Mandrake Linux | =6.0 | |
Caldera Openlinux Eserver | =2.3 | |
Redhat Linux | =6.2e | |
Suse Suse Linux | =7.0 | |
Caldera Openlinux Edesktop | =2.4 | |
Redhat Linux | =6.0 | |
Mandrakesoft Mandrake Linux | =6.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.