CVE Vulnerabilities

CVE-2000-1134

Published: Jan 09, 2001 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing « redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via a symlink attack.

Affected Software

NameVendorStart VersionEnd Version
ImmunixImmunix6.2 (including)6.2 (including)
LinuxConectiva4.0 (including)4.0 (including)
LinuxConectiva4.0es (including)4.0es (including)
LinuxConectiva4.1 (including)4.1 (including)
LinuxConectiva4.2 (including)4.2 (including)
LinuxConectiva5.0 (including)5.0 (including)
LinuxConectiva5.1 (including)5.1 (including)
Red Hat Linux 5.2RedHat*
Red Hat Linux 6.0RedHat*
Red Hat Linux 6.1RedHat*
Red Hat Linux 6.2RedHat*
Red Hat Linux 7.0RedHat*
Red Hat Linux 7.0jRedHat*

References