The copy_symlink function in rsnapshot 1.2.0 and 1.1.x before 1.1.7 changes the ownership of files that a symlink points to rather than the symlink itself, which allows local users to obtain access to arbitrary files.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Filesystem_snapshot_utility | Rsnapshot | 1.0.10 (including) | 1.0.10 (including) |
Filesystem_snapshot_utility | Rsnapshot | 1.1 (including) | 1.1 (including) |
Filesystem_snapshot_utility | Rsnapshot | 1.1.1 (including) | 1.1.1 (including) |
Filesystem_snapshot_utility | Rsnapshot | 1.1.2 (including) | 1.1.2 (including) |
Filesystem_snapshot_utility | Rsnapshot | 1.1.3 (including) | 1.1.3 (including) |
Filesystem_snapshot_utility | Rsnapshot | 1.1.4 (including) | 1.1.4 (including) |
Filesystem_snapshot_utility | Rsnapshot | 1.1.5 (including) | 1.1.5 (including) |
Filesystem_snapshot_utility | Rsnapshot | 1.1.6 (including) | 1.1.6 (including) |
Filesystem_snapshot_utility | Rsnapshot | 1.2 (including) | 1.2 (including) |