CVE Vulnerabilities

CVE-2004-0107

Published: Apr 15, 2004 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The (1) post and (2) trigger scripts in sysstat 4.0.7 and earlier allow local users to overwrite arbitrary files via symlink attacks on temporary files, a different vulnerability than CVE-2004-0108.

Affected Software

NameVendorStart VersionEnd Version
SysstatRedhat4.0.7-3 (including)4.0.7-3 (including)
PropackSgi2.3 (including)2.3 (including)
PropackSgi2.4 (including)2.4 (including)
SysstatSysstat4.0.7 (including)4.0.7 (including)
SysstatSysstat4.1.1 (including)4.1.1 (including)
SysstatSysstat4.1.2 (including)4.1.2 (including)
SysstatSysstat4.1.3 (including)4.1.3 (including)
SysstatSysstat4.1.4 (including)4.1.4 (including)
SysstatSysstat4.1.5 (including)4.1.5 (including)
SysstatSysstat4.1.6 (including)4.1.6 (including)
SysstatSysstat4.1.7 (including)4.1.7 (including)
SysstatSysstat5.0.1 (including)5.0.1 (including)
Red Hat Enterprise Linux 3RedHatsysstat-0:4.0.7-4.EL3.2*
Red Hat Linux 9RedHat*

References