PT-2004-1202 · Oracle · Solaris

Published

2004-01-06

·

Updated

2018-10-30

·

CVE-2003-1024

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions tcsh on Solaris 8
Description A security issue in the ls-F builtin function of tcsh on Solaris 8 allows local users to create or delete files as other users and gain privileges.
Recommendations For tcsh on Solaris 8, consider restricting access to the ls-F builtin function as a temporary workaround until a patch is available.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2003-1024

Affected Products

Solaris