|
|
| |
|
| |
mirrorselect: insecure temporary file creation
| Package(s): | mirrorselect |
CVE #(s): | |
| Created: | December 7, 2004 |
Updated: | December 8, 2004 |
| Description: |
Ervin Nemeth discovered that mirrorselect creates temporary files in
world-writable directories with predictable names. A local attacker could
create symbolic links in the temporary files directory, pointing to a valid
file somewhere on the filesystem. When mirrorselect is executed, this would
result in the file being overwritten with the rights of the user running
the utility, which could be the root user. |
| Alerts: |
|
( Log in to post comments)
|
|
|