CVE Vulnerabilities

CVE-2005-2449

Published: Aug 03, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
1.2 LOW
AV:L/AC:H/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Race condition in sandbox before 1.2.11 allows local users to create or overwrite arbitrary files via symlink attack on sandboxpids.tmp.

Affected Software

NameVendorStart VersionEnd Version
SandboxSandbox1.2 (including)1.2 (including)
SandboxSandbox1.2.1 (including)1.2.1 (including)
SandboxSandbox1.2.1_r3 (including)1.2.1_r3 (including)
SandboxSandbox1.2.2 (including)1.2.2 (including)
SandboxSandbox1.2.3 (including)1.2.3 (including)
SandboxSandbox1.2.4 (including)1.2.4 (including)
SandboxSandbox1.2.5 (including)1.2.5 (including)
SandboxSandbox1.2.5_r1 (including)1.2.5_r1 (including)
SandboxSandbox1.2.5_r2 (including)1.2.5_r2 (including)
SandboxSandbox1.2.6 (including)1.2.6 (including)
SandboxSandbox1.2.7 (including)1.2.7 (including)
SandboxSandbox1.2.8 (including)1.2.8 (including)
SandboxSandbox1.2.9 (including)1.2.9 (including)
SandboxSandbox1.2.10 (including)1.2.10 (including)

References