First published: Thu Oct 09 2003(Updated: )
SuSEconfig.susewm in the susewm package on SuSE Linux 8.2Pro allows local users to overwrite arbitrary files via a symlink attack on the susewm.$$ temporary file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SUSE Linux | =8.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2003-0847 is considered a moderate severity vulnerability as it allows local users to overwrite arbitrary files.
To fix CVE-2003-0847, ensure that the susewm package is updated to the latest version that resolves this symlink vulnerability.
CVE-2003-0847 affects local users of SuSE Linux 8.2 Professional who can exploit the symlink attack.
CVE-2003-0847 is a symlink attack that allows local users to manipulate temporary file handling.
CVE-2003-0847 is a local vulnerability that can only be exploited by users with local access to the system.