CVE Vulnerabilities

CVE-2005-2449

Published: Aug 03, 2005 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
1.2 LOW
AV:L/AC:H/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Race condition in sandbox before 1.2.11 allows local users to create or overwrite arbitrary files via symlink attack on sandboxpids.tmp.

Affected Software

Name Vendor Start Version End Version
Sandbox Sandbox 1.2 (including) 1.2 (including)
Sandbox Sandbox 1.2.1 (including) 1.2.1 (including)
Sandbox Sandbox 1.2.1_r3 (including) 1.2.1_r3 (including)
Sandbox Sandbox 1.2.2 (including) 1.2.2 (including)
Sandbox Sandbox 1.2.3 (including) 1.2.3 (including)
Sandbox Sandbox 1.2.4 (including) 1.2.4 (including)
Sandbox Sandbox 1.2.5 (including) 1.2.5 (including)
Sandbox Sandbox 1.2.5_r1 (including) 1.2.5_r1 (including)
Sandbox Sandbox 1.2.5_r2 (including) 1.2.5_r2 (including)
Sandbox Sandbox 1.2.6 (including) 1.2.6 (including)
Sandbox Sandbox 1.2.7 (including) 1.2.7 (including)
Sandbox Sandbox 1.2.8 (including) 1.2.8 (including)
Sandbox Sandbox 1.2.9 (including) 1.2.9 (including)
Sandbox Sandbox 1.2.10 (including) 1.2.10 (including)

References