CVSS2
Attack Vector
LOCAL
Attack Complexity
HIGH
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
PARTIAL
Availability Impact
NONE
AV:L/AC:H/Au:N/C:N/I:P/A:N
AI Score
Confidence
Low
EPSS
Percentile
5.1%
Race condition in the recursive (1) directory deletion and (2) directory move in GNU File Utilities (fileutils) 4.1 and earlier allows local users to delete directories as the user running fileutils by moving a low-level directory to a higher level as it is being deleted, which causes fileutils to chdir to a โโฆโ directory that is higher than expected, possibly up to the root file system.
ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2002-018.1.txt
mail.gnu.org/archive/html/bug-fileutils/2002-03/msg00028.html
www.iss.net/security_center/static/8432.php
www.linux-mandrake.com/en/security/2002/MDKSA-2002-031.php
www.redhat.com/support/errata/RHSA-2003-015.html
www.redhat.com/support/errata/RHSA-2003-016.html
www.securityfocus.com/archive/1/260936
www.securityfocus.com/bid/4266