Computer Security
[EN] securityvulns.ru
no-pyccku



Linux Security Auditing Tool symbolic links problem
Published:19.03.2007
Source:BUGTRAQ
SecurityVulns ID:7433
Type:local
Level:5/10
Description:Symbolic links problem on temporary file creation.
Affected:LSAT : lsat 0.9
CVE:CVE-2007-1500 (The Linux Security Auditing Tool (LSAT) allows local users to overwrite arbitrary files via a symlink attack on temporary files, as demonstrated using /tmp/lsat1.lsat.)
Original documentdocumentGENTOO, [ GLSA 200703-20 ] LSAT: Insecure temporary file creation (19.03.2007)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru