Race condition in shtool 2.0.1 and earlier allows local users to create or modify arbitrary files via a symlink attack on the .shtool.$$ temporary file, a different vulnerability than CVE-2005-1759.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Shtool | Shtool | * | 2.0.1 (including) |
Red Hat Enterprise Linux 3 | RedHat | php-0:4.3.2-24.ent | * |
Red Hat Enterprise Linux 4 | RedHat | php-0:4.3.9-3.7 | * |
Mysql-ocaml | Ubuntu | dapper | * |
Mysql-ocaml | Ubuntu | devel | * |
Mysql-ocaml | Ubuntu | edgy | * |
Mysql-ocaml | Ubuntu | feisty | * |
Php5 | Ubuntu | dapper | * |
Php5 | Ubuntu | devel | * |
Php5 | Ubuntu | edgy | * |
Php5 | Ubuntu | feisty | * |