PT-2004-1735 · Shorewall · Shorewall

Publicado

2004-07-13

·

Atualizado

2017-07-11

·

CVE-2004-0647

CVSS v2.0

4.6

Média

VetorAV:L/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions shorewall versions 1.4.10c and earlier shorewall versions 2.0.x before 2.0.3a
Description The issue allows local users to overwrite arbitrary files via a symlink attack on the chains-$$ temporary file.
Recommendations For shorewall versions 1.4.10c and earlier, update to a version later than 1.4.10c. For shorewall versions 2.0.x before 2.0.3a, update to version 2.0.3a or later.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2004-0647

Produtos afetados

Shorewall