REDHAT-BUG-484211: Low severity ALSA alsa-utils vulnerability
Published Feb 5, 2009
·Updated
alsa-utils-1.0.19 and later allows local users to overwrite arbitrary files via a symlink attack via the 1), /usr/bin/alsa-info and 2, /usr/bin/alsa-info.sh scripts.
Affected Software
1 affected component
ALSA alsa-utils>1.0.19
Event History
Feb 5, 2009
Data Sourced
01:33 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the risk associated with REDHAT-BUG-484211?
REDHAT-BUG-484211 allows local users to overwrite arbitrary files through a symlink attack, leading to potential unauthorized file manipulation.
2
What versions of alsa-utils are affected by REDHAT-BUG-484211?
Versions of alsa-utils prior to 1.0.19 are affected by REDHAT-BUG-484211.
3
How can I mitigate the vulnerability found in REDHAT-BUG-484211?
To mitigate REDHAT-BUG-484211, consider upgrading to the latest version of alsa-utils that addresses this vulnerability.
4
What files are exploited in the REDHAT-BUG-484211 vulnerability?
The vulnerability in REDHAT-BUG-484211 exploits the scripts /usr/bin/alsa-info and /usr/bin/alsa-info.sh.
5
Is REDHAT-BUG-484211 a local or remote attack?
REDHAT-BUG-484211 is a local attack that requires authenticated access to the system.