CVE Vulnerabilities

CVE-1999-1095

Published: Oct 06, 1997 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

sort creates temporary files and follows symbolic links, which allows local users to modify arbitrary files that are writable by the user running sort, as observed in updatedb and other programs that use sort.

Affected Software

NameVendorStart VersionEnd Version
LinuxRedhat4.1 (including)4.1 (including)
Slackware_linuxSlackware3.3 (including)3.3 (including)

References