LWN.net Logo

hardlink: multiple vulnerabilities

Package(s):hardlink CVE #(s):CVE-2011-3630 CVE-2011-3631 CVE-2011-3632
Created:November 24, 2011 Updated:August 20, 2012
Description:

From the Fedora advisory:

CVE-2011-3630 hardlink: Multiple stack-based buffer overflows when run on a tree with deeply nested directories

CVE-2011-3631 hardlink: Multiple integer overflows, when adding string lengths

CVE-2011-3632 hardlink: Prone to symlink attacks

Alerts:
Fedora FEDORA-2011-14753 2011-10-22
Fedora FEDORA-2011-14727 2011-10-22
Mageia MGASA-2012-0221 2012-08-18

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds