LWN.net Logo

perl-Proc-ProcessTable: symlink attack

Package(s):perl-Proc-ProcessTable CVE #(s):CVE-2011-4363
Created:August 5, 2013 Updated:August 23, 2013
Description: From the CVE entry:

ProcessTable.pm in the Proc::ProcessTable module 0.45 for Perl, when TTY information caching is enabled, allows local users to overwrite arbitrary files via a symlink attack on /tmp/TTYDEVS.

Alerts:
Fedora FEDORA-2013-13617 2013-08-02
Fedora FEDORA-2013-13635 2013-08-02
Mageia MGASA-2013-0254 2013-08-22
Mandriva MDVSA-2013:216 2013-08-23

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds