CVE Vulnerabilities

CVE-1999-0864

Published: Dec 03, 1999 | Modified: Oct 18, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

UnixWare programs that dump core allow a local user to modify files via a symlink attack on the ./core.pid file.

Affected Software

Name Vendor Start Version End Version
Unixware Sco 7.0 7.0
Unixware Sco 7.0.1 7.0.1
Unixware Sco 7.1 7.1
Unixware Sco 7.1.1 7.1.1

References