CVE-2001-0036: Low severity KTH KTH Kerberos vulnerability
Published Feb 16, 2001
·Updated
KTH Kerberos IV allows local users to overwrite arbitrary files via a symlink attack on a ticket file.
Affected Software
1 affected component
KTH KTH Kerberos=4
Remediation
Event History
Feb 16, 2001
CVE Published
05:00 AM
May 7, 2001
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0036?
CVE-2001-0036 is classified as a high severity vulnerability due to the potential for local users to exploit symlink attacks.
2
How do I fix CVE-2001-0036?
To fix CVE-2001-0036, ensure that proper file permission and symlink protection measures are implemented on KTH Kerberos IV ticket files.
3
Who is affected by CVE-2001-0036?
CVE-2001-0036 affects users of KTH Kerberos IV version 4.
4
What type of attack is associated with CVE-2001-0036?
CVE-2001-0036 is associated with a symlink attack that allows local users to overwrite arbitrary files.
5
Is CVE-2001-0036 still a relevant vulnerability?
CVE-2001-0036 may still be relevant in environments using outdated versions of KTH Kerberos IV, highlighting the importance of keeping software updated.