CVE Vulnerabilities

CVE-1999-0864

Published: Dec 03, 1999 | Modified: Nov 07, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

UnixWare programs that dump core allow a local user to modify files via a symlink attack on the ./core.pid file.

Affected Software

Name Vendor Start Version End Version
Unixware Sco 7.0 (including) 7.0 (including)
Unixware Sco 7.0.1 (including) 7.0.1 (including)
Unixware Sco 7.1 (including) 7.1 (including)
Unixware Sco 7.1.1 (including) 7.1.1 (including)

References