CVE Vulnerabilities

CVE-2005-2180

Published: Jul 11, 2005 | Modified: Oct 18, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

gen-index in GNATS 4.0, 4.1.0, and possibly earlier versions, when installed setuid, does not properly check files passed to the -o argument and opens the file with write access, which allows local users to overwrite arbitrary files.

Affected Software

Name Vendor Start Version End Version
Gnats Gnu 4.0 4.0
Gnats Gnu 4.1.0 4.1.0

References