Lucene search

K
cve[email protected]CVE-2005-1119
HistoryOct 03, 2022 - 4:22 p.m.

CVE-2005-1119

2022-10-0316:22:41
web.nvd.nist.gov
26
cve-2005-1119
sudo visudo
local file corruption
symlink attack
nvd

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:L/Au:N/C:N/I:P/A:N

AI Score

6.4

Confidence

High

EPSS

0

Percentile

5.1%

Sudo VISudo 1.6.8 and earlier allows local users to corrupt arbitrary files via a symlink attack on temporary files.

Affected configurations

NVD
Node
todd_millersudoMatch1.5.6
OR
todd_millersudoMatch1.5.7
OR
todd_millersudoMatch1.5.8
OR
todd_millersudoMatch1.5.9
OR
todd_millersudoMatch1.6
OR
todd_millersudoMatch1.6.1
OR
todd_millersudoMatch1.6.2
OR
todd_millersudoMatch1.6.3
OR
todd_millersudoMatch1.6.3_p1
OR
todd_millersudoMatch1.6.3_p2
OR
todd_millersudoMatch1.6.3_p3
OR
todd_millersudoMatch1.6.3_p4
OR
todd_millersudoMatch1.6.3_p5
OR
todd_millersudoMatch1.6.3_p6
OR
todd_millersudoMatch1.6.3_p7
OR
todd_millersudoMatch1.6.4
OR
todd_millersudoMatch1.6.4_p1
OR
todd_millersudoMatch1.6.4_p2
OR
todd_millersudoMatch1.6.5
OR
todd_millersudoMatch1.6.5_p1
OR
todd_millersudoMatch1.6.5_p2
OR
todd_millersudoMatch1.6.6
OR
todd_millersudoMatch1.6.7
OR
todd_millersudoMatch1.6.7_p5
OR
todd_millersudoMatch1.6.8
OR
todd_millersudoMatch1.6.8_p1
OR
todd_millersudoMatch1.6.8_p8
VendorProductVersionCPE
todd_millersudo1.6.3+p1cpe:/a:todd_miller:sudo:1.6.3+p1:::
todd_millersudo1.6.3+p2cpe:/a:todd_miller:sudo:1.6.3+p2:::
todd_millersudo1.6.7cpe:/a:todd_miller:sudo:1.6.7:::
todd_millersudo1.5.7cpe:/a:todd_miller:sudo:1.5.7:::
todd_millersudo1.5.8cpe:/a:todd_miller:sudo:1.5.8:::
todd_millersudo1.6.6cpe:/a:todd_miller:sudo:1.6.6:::
todd_millersudo1.6.5cpe:/a:todd_miller:sudo:1.6.5:::
todd_millersudo1.6.3+p6cpe:/a:todd_miller:sudo:1.6.3+p6:::
todd_millersudo1.6.5+p2cpe:/a:todd_miller:sudo:1.6.5+p2:::
todd_millersudo1.6.7+p5cpe:/a:todd_miller:sudo:1.6.7+p5:::
Rows per page:
1-10 of 271

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:L/Au:N/C:N/I:P/A:N

AI Score

6.4

Confidence

High

EPSS

0

Percentile

5.1%

Related for CVE-2005-1119