CVE-2002-0678: High severity Caldera UnixWare vulnerability
CDE ToolTalk database server (ttdbserver) allows local users to overwrite arbitrary files via a symlink attack on the transaction log file used by the TTTRANSACTION RPC procedure.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability CVE-2002-0678?
CVE-2002-0678 allows local users to overwrite arbitrary files via a symlink attack on the transaction log file used by the CDE ToolTalk database server (ttdbserver).
What are the affected software versions of CVE-2002-0678?
CVE-2002-0678 affects various versions of SGI IRIX, Xinuos UnixWare, HPE HP-UX, Sun SunOS, Compaq Tru64, and IBM AIX.
What are common mitigation strategies for CVE-2002-0678?
To mitigate CVE-2002-0678, it is recommended to restrict local user access and implement proper file permission controls to prevent symlink attacks.
How do I check if my system is vulnerable to CVE-2002-0678?
You can check for CVE-2002-0678 vulnerability by verifying if your system is running an affected version of the CDE ToolTalk database server.
What is the impact of exploiting CVE-2002-0678?
Exploiting CVE-2002-0678 can allow attackers to overwrite critical files, potentially compromising system integrity and availability.