Lucene search

K
cveMitreCVE-2001-0109
HistoryMay 07, 2001 - 4:00 a.m.

CVE-2001-0109

2001-05-0704:00:00
mitre
web.nvd.nist.gov
33
cve-2001-0109
suse 7.0
symlink attack
rctmp
local users
overwrite files
nvd

CVSS2

1.2

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:H/Au:N/C:N/I:P/A:N

AI Score

6.7

Confidence

High

EPSS

0

Percentile

0.4%

rctab in SuSE 7.0 and earlier allows local users to create or overwrite arbitrary files via a symlink attack on the rctmp temporary file.

Affected configurations

Nvd
Node
susesuse_linuxMatch6.1
OR
susesuse_linuxMatch6.2
OR
susesuse_linuxMatch6.3
OR
susesuse_linuxMatch6.4
OR
susesuse_linuxMatch7.0
VendorProductVersionCPE
susesuse_linux6.1cpe:2.3:o:suse:suse_linux:6.1:*:*:*:*:*:*:*
susesuse_linux6.2cpe:2.3:o:suse:suse_linux:6.2:*:*:*:*:*:*:*
susesuse_linux6.3cpe:2.3:o:suse:suse_linux:6.3:*:*:*:*:*:*:*
susesuse_linux6.4cpe:2.3:o:suse:suse_linux:6.4:*:*:*:*:*:*:*
susesuse_linux7.0cpe:2.3:o:suse:suse_linux:7.0:*:*:*:*:*:*:*

CVSS2

1.2

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:H/Au:N/C:N/I:P/A:N

AI Score

6.7

Confidence

High

EPSS

0

Percentile

0.4%

Related for CVE-2001-0109