LWN.net Logo

setroubleshoot: symlink and HTML injection vulnerabilities

Package(s):setroubleshoot CVE #(s):CVE-2007-5495 CVE-2007-5496
Created:May 21, 2008 Updated:May 21, 2008
Description: The setroubleshoot utility, used by system administrators to diagnose SELinux-related problems, suffers from symbolic link (file overwrite) and HTML injection vulnerabilities.
Alerts:
Red Hat RHSA-2008:0061-02 2008-05-21

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds