CVE-2004-1901
5.5MEDIUMPortage before 2.0.50-r3 allows local users to overwrite arbitrary files via a hard link attack on the lockfiles.
Veröffentlicht: 12/31/2004Aktualisiert: 4/3/2025
Beschreibung
Portage before 2.0.50-r3 allows local users to overwrite arbitrary files via a hard link attack on the lockfiles.
KI-AnalyseKI-gestützt
Betroffene Produkte
gentooportage
gentooportage
2.0.50
gentoolinux
1.4
gentoolinux
1.4
gentoolinux
1.4
Referenzen
- http://secunia.com/advisories/11305Broken LinkPatch
- http://security.gentoo.org/glsa/glsa-200404-01.xmlVendor Advisory
- http://www.securityfocus.com/bid/10060Broken LinkPatchThird Party AdvisoryVDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15754Third Party AdvisoryVDB Entry
- http://secunia.com/advisories/11305Broken LinkPatch
- http://security.gentoo.org/glsa/glsa-200404-01.xmlVendor Advisory
- http://www.securityfocus.com/bid/10060Broken LinkPatchThird Party AdvisoryVDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15754Third Party AdvisoryVDB Entry