PT-2004-1988 · Netatalk+1 · Netatalk+1

Published

2004-10-20

·

Updated

2017-07-11

·

CVE-2004-0974

CVSS v2.0

2.1

Low

VectorAV:L/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions: Trustix Secure Linux versions 1.5 through 2.1
Description: The issue allows local users to overwrite files via a symlink attack on temporary files created by the netatalk package.
Recommendations: For Trustix Secure Linux versions 1.5 through 2.1, consider restricting access to the netatalk package until a fix is available, and avoid using it for sensitive operations.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-0974

Affected Products

Trustix Secure Linux
Netatalk