fixproc in Net-snmp 5.x before 5.2.1-r1 creates temporary files insecurely, which allows local users to modify the contents of those files to execute arbitrary commands, or overwrite arbitrary files via a symlink attack.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Net-snmp | Net-snmp | 5.0.1 (including) | 5.0.1 (including) |
Net-snmp | Net-snmp | 5.0.3 (including) | 5.0.3 (including) |
Net-snmp | Net-snmp | 5.0.4_pre2 (including) | 5.0.4_pre2 (including) |
Net-snmp | Net-snmp | 5.0.5 (including) | 5.0.5 (including) |
Net-snmp | Net-snmp | 5.0.6 (including) | 5.0.6 (including) |
Net-snmp | Net-snmp | 5.0.7 (including) | 5.0.7 (including) |
Net-snmp | Net-snmp | 5.0.8 (including) | 5.0.8 (including) |
Net-snmp | Net-snmp | 5.0.9 (including) | 5.0.9 (including) |
Net-snmp | Net-snmp | 5.1.2 (including) | 5.1.2 (including) |
Red Hat Enterprise Linux 3 | RedHat | net-snmp-0:5.0.9-2.30E.19 | * |
Red Hat Enterprise Linux 4 | RedHat | net-snmp-0:5.1.2-11.EL4.6 | * |