Lucene search

K
ubuntucveUbuntu.comUB:CVE-2004-0975
HistoryFeb 09, 2005 - 12:00 a.m.

CVE-2004-0975

2005-02-0900:00:00
ubuntu.com
ubuntu.com
14

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:L/Au:N/C:N/I:P/A:N

EPSS

0

Percentile

5.1%

The der_chop script in the openssl package in Trustix Secure Linux 1.5
through 2.1 and other operating systems allows local users to overwrite
files via a symlink attack on temporary files.

OSVersionArchitecturePackageVersionFilename
ubuntu6.06noarchopenssl< 0.9.8a-7ubuntu0.3UNKNOWN
ubuntu6.10noarchopenssl< 0.9.8b-2ubuntu2UNKNOWN
ubuntu7.04noarchopenssl< 0.9.8b-2ubuntu2UNKNOWN
ubuntu6.06noarchopenssl097< 0.9.7g-5ubuntu1.1UNKNOWN
ubuntu6.10noarchopenssl097< 0.9.7k-3UNKNOWN
ubuntu7.04noarchopenssl097< 0.9.7k-3UNKNOWN

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:L/Au:N/C:N/I:P/A:N

EPSS

0

Percentile

5.1%