CVE Vulnerabilities

CVE-2004-0107

Published: Apr 15, 2004 | Modified: Oct 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The (1) post and (2) trigger scripts in sysstat 4.0.7 and earlier allow local users to overwrite arbitrary files via symlink attacks on temporary files, a different vulnerability than CVE-2004-0108.

Affected Software

Name Vendor Start Version End Version
Sysstat Redhat 4.0.7-3 (including) 4.0.7-3 (including)
Propack Sgi 2.3 (including) 2.3 (including)
Propack Sgi 2.4 (including) 2.4 (including)
Sysstat Sysstat 4.0.7 (including) 4.0.7 (including)
Sysstat Sysstat 4.1.1 (including) 4.1.1 (including)
Sysstat Sysstat 4.1.2 (including) 4.1.2 (including)
Sysstat Sysstat 4.1.3 (including) 4.1.3 (including)
Sysstat Sysstat 4.1.4 (including) 4.1.4 (including)
Sysstat Sysstat 4.1.5 (including) 4.1.5 (including)
Sysstat Sysstat 4.1.6 (including) 4.1.6 (including)
Sysstat Sysstat 4.1.7 (including) 4.1.7 (including)
Sysstat Sysstat 5.0.1 (including) 5.0.1 (including)
Red Hat Enterprise Linux 3 RedHat sysstat-0:4.0.7-4.EL3.2 *
Red Hat Linux 9 RedHat *

References