Lucene search

K
osvGoogleOSV:DSA-460
HistoryMar 10, 2004 - 12:00 a.m.

sysstat - insecure temporary file

2004-03-1000:00:00
Google
osv.dev
5

0.0004 Low

EPSS

Percentile

5.1%

Alan Cox discovered that the isag utility (which graphically displays
data collected by the sysstat tools), creates a temporary file without
taking proper precautions. This vulnerability could allow a local
attacker to overwrite files with the privileges of the user invoking
isag.

For the current stable distribution (woody) this problem has been
fixed in version 5.0.1-1.

For the unstable distribution (sid) this problem will be fixed soon.

We recommend that you update your sysstat package.

CPENameOperatorVersion
sysstateq4.0.4-1woody2