CVE-2001-0946: Low severity redhat Linux vulnerability
apmscript in Apmd in Red Hat 7.2 "Enigma" allows local users to create or change the modification dates of arbitrary files via a symlink attack on the LOWPOWER temporary file, which could be used to cause a denial of service, e.g. by creating /etc/nologin and disabling logins.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2001-0946?
CVE-2001-0946 has a moderate severity rating as it can lead to a denial of service by allowing local users to modify critical system files.
How do I fix CVE-2001-0946?
To fix CVE-2001-0946, ensure that the APM daemon does not use symlinked temporary files by applying security patches or configuring it not to run.
Who is affected by CVE-2001-0946?
CVE-2001-0946 affects local users on systems running Red Hat Linux version 7.2.
What type of attack is described in CVE-2001-0946?
CVE-2001-0946 describes a symlink attack that can manipulate file modification dates.
What can an attacker achieve with CVE-2001-0946?
An attacker can create or change the modification dates of arbitrary files, potentially disabling system logins or other critical functions.