CVE-2002-2323: High severity Sun Solaris PC NetLink vulnerability
Sun PC NetLink 1.0 through 1.2 does not properly set the access control list (ACL) for files and directories that use symbolic links and have been restored from backup, which could allow local or remote attackers to bypass intended access restrictions.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2002-2323?
CVE-2002-2323 is rated as a medium severity vulnerability due to improper access control allowing potential bypass by attackers.
How do I fix CVE-2002-2323?
To fix CVE-2002-2323, ensure that the access control lists for files and directories are correctly set after restoring from backups.
Who is affected by CVE-2002-2323?
CVE-2002-2323 affects users of Sun PC NetLink versions 1.0 through 1.2.
Can CVE-2002-2323 be exploited remotely?
Yes, CVE-2002-2323 can be exploited by both local and remote attackers due to improper ACL settings.
What are the potential impacts of CVE-2002-2323?
The potential impacts of CVE-2002-2323 include unauthorized access to files and directories that should be restricted.