|
|
Subscribe / Log in / New account

sandbox: insecure temporary file handling

Package(s):sandbox CVE #(s):
Created:July 25, 2005 Updated:July 27, 2005
Description: The Gentoo Linux Security Audit Team discovered that the sandbox utility was vulnerable to multiple TOCTOU (Time of Check, Time of Use) file creation race conditions. Local users may be able to create or overwrite arbitrary files with the permissions of the root user.
Alerts:
Gentoo 200507-22 sandbox 2005-07-25

to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds