PT-2001-1026 · Gnu · Diffutils

Publicado

2001-03-12

·

Atualizado

2017-10-10

·

CVE-2001-0117

CVSS v2.0

1.2

Baixa

VetorAV:L/AC:H/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions diffutils version 2.7
Description The issue allows local users to overwrite files via a symlink attack, potentially leading to integrity violations of protected information. This can be exploited locally.
Recommendations For version 2.7, consider restricting access to sensitive files and directories to minimize the risk of exploitation until a patch is available. As a temporary workaround, avoid using the sdiff command in scenarios where file overwriting could have significant consequences.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

BDU:2015-07839
CVE-2001-0117

Produtos afetados

Diffutils