PT-2002-3163 · Fam+3 · Fam+3
Published
1970-01-01
·
Updated
2008-09-10
·
CVE-2002-0875
CVSS v2.0
2.1
Low
| Vector | AV:L/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
FAM versions 2.6.4 through 2.6.8
libfam0 (affected versions not specified)
libfam-dev (affected versions not specified)
fam-devel-2.6.4
Description
The issue concerns multiple vulnerabilities in the FAM package, which can be exploited by a local attacker to compromise the confidentiality of protected information. The vulnerabilities can be exploited locally, allowing unprivileged users to obtain the names of files whose access is restricted to the root group.
Recommendations
For FAM versions 2.6.4 through 2.6.8, update to a version that contains a fix for this issue.
For libfam0, at the moment, there is no information about a newer version that contains a fix for this issue.
For libfam-dev, at the moment, there is no information about a newer version that contains a fix for this issue.
For fam-devel-2.6.4, update to a version that contains a fix for this issue.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Fam
Fam-Devel
Libfam-Dev
Libfam0