PT-2000-1656 · Helix Gnome · Helix-Update
Publicado
2000-10-20
·
Atualizado
2008-09-05
·
CVE-2000-0723
CVSS v2.0
1.2
Baixa
| Vetor | AV:L/AC:H/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Helix GNOME Updater helix-update versions 0.5 and earlier
Description
The issue allows local users to create empty system configuration files, such as /etc/config.d/bashrc, /etc/config.d/csh.cshrc, and /etc/rc.config, due to improper creation of /tmp directories.
Recommendations
For helix-update versions 0.5 and earlier, ensure proper creation of /tmp directories to prevent local users from creating empty system configuration files. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Helix-Update