CVE-2011-1073: Low severity freebsd kernel vulnerability
Published Mar 4, 2011
·Updated
crontab.c in crontab in FreeBSD and Apple Mac OS X allows local users to (1) determine the existence of arbitrary files via a symlink attack on a /tmp/crontab.XXXXXXXXXX temporary file and (2) perform MD5 checksum comparisons on arbitrary pairs of files via two symlink attacks on /tmp/crontab.XXXXXXXXXX temporary files.
Affected Software
2 affected components
FreeBSD FreeBSD
Apple iOS and macOS
Event History
Mar 4, 2011
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-1073?
CVE-2011-1073 has been classified as a moderate severity vulnerability.
2
How do I fix CVE-2011-1073?
To remediate CVE-2011-1073, ensure proper configuration and avoid using symlinks in the /tmp directory.
3
What systems are affected by CVE-2011-1073?
CVE-2011-1073 affects FreeBSD and macOS operating systems.
4
What are the potential risks of CVE-2011-1073?
The risks include unauthorized file access and the ability to verify the existence of sensitive files.
5
Can CVE-2011-1073 be exploited remotely?
No, CVE-2011-1073 can only be exploited locally by users with system access.