First published: Tue Jul 03 2007(Updated: )
The (1) getRule and (2) getChains functions in server/rules.cpp in fireflierd (fireflier-server) in FireFlier 1.1.6 allow local users to overwrite arbitrary files via a symlink attack on the /tmp/fireflier.rules temporary file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Debian Debian Linux | =3.1 | |
Debian Debian Linux | =4.0 | |
Debian Debian Linux | =4.0 | |
Debian Debian Linux | =4.0 | |
Debian Debian Linux | =4.0 | |
Debian Debian Linux | =4.0 | |
Debian Debian Linux | =4.0 | |
Debian Debian Linux | =4.0 | |
Debian Debian Linux | =4.0 | |
Debian Debian Linux | =4.0 | |
Debian Debian Linux | =4.0 | |
Fireflier Fireflier | =1.1.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.