CVE-2010-1183: Low severity Sun Solaris vulnerability
Published Mar 29, 2010
·Updated
Certain patch-installation scripts in Oracle Solaris allow local users to append data to arbitrary files via a symlink attack on the /tmp/CLEANUP temporary file, related to use of Update Manager.
Affected Software
1 affected component
Sun Solaris
Event History
Mar 29, 2010
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Data Sourced
via NVD·10:30 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2010-1183?
CVE-2010-1183 is considered a high-severity vulnerability due to its potential for local privilege escalation.
2
How do I fix CVE-2010-1183?
To mitigate CVE-2010-1183, ensure that updates are applied to Oracle Solaris that address this vulnerability.
3
Who is affected by CVE-2010-1183?
CVE-2010-1183 affects local users of Oracle Solaris who can exploit the symlink vulnerability.
4
What type of attack is associated with CVE-2010-1183?
CVE-2010-1183 is associated with a symlink attack that allows data to be appended to arbitrary files.
5
When was CVE-2010-1183 disclosed?
CVE-2010-1183 was disclosed in 2010 as part of security vulnerabilities in Oracle Solaris.