CVE-2005-0990: Low severity GNU sharutils vulnerability
Published Apr 6, 2005
·Updated
unshar (unshar.c) in sharutils 4.2.1 allows local users to overwrite arbitrary files via a symlink attack on the unsh.X temporary file.
Affected Software
1 affected component
GNU sharutils=4.2.1
Remediation
Patch Available
Event History
Apr 6, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-0990?
CVE-2005-0990 is classified as a medium severity vulnerability.
2
How do I fix CVE-2005-0990?
To fix CVE-2005-0990, update to a later version of sharutils that addresses this issue.
3
What types of attacks does CVE-2005-0990 enable?
CVE-2005-0990 enables local users to perform a symlink attack to overwrite arbitrary files.
4
Which version of sharutils is affected by CVE-2005-0990?
CVE-2005-0990 affects sharutils version 4.2.1.
5
Is CVE-2005-0990 specific to any operating system?
CVE-2005-0990 is relevant to systems running GNU sharutils version 4.2.1, but it can impact any OS using this version.