CVE-2004-1901
5.5MEDIUMPortage before 2.0.50-r3 allows local users to overwrite arbitrary files via a hard link attack on the lockfiles.
게시됨: 12/31/2004업데이트됨: 4/3/2025
설명
Portage before 2.0.50-r3 allows local users to overwrite arbitrary files via a hard link attack on the lockfiles.
AI 분석AI 기반
영향받는 제품
gentooportage
gentooportage
2.0.50
gentoolinux
1.4
gentoolinux
1.4
gentoolinux
1.4
참조
- http://secunia.com/advisories/11305Broken LinkPatch
- http://security.gentoo.org/glsa/glsa-200404-01.xmlVendor Advisory
- http://www.securityfocus.com/bid/10060Broken LinkPatchThird Party AdvisoryVDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15754Third Party AdvisoryVDB Entry
- http://secunia.com/advisories/11305Broken LinkPatch
- http://security.gentoo.org/glsa/glsa-200404-01.xmlVendor Advisory
- http://www.securityfocus.com/bid/10060Broken LinkPatchThird Party AdvisoryVDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15754Third Party AdvisoryVDB Entry