CVE Vulnerabilities

CVE-2005-2475

Published: Aug 05, 2005 | Modified: Oct 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
1.2 LOW
AV:L/AC:H/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Race condition in Unzip 5.52 allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by Unzip after the decompression is complete.

Affected Software

Name Vendor Start Version End Version
Unzip Info-zip 5.52 (including) 5.52 (including)
Red Hat Enterprise Linux 3 RedHat unzip-0:5.50-35.EL3 *
Red Hat Enterprise Linux 4 RedHat unzip-0:5.51-9.EL4.5 *
Unzip Ubuntu dapper *
Unzip Ubuntu devel *
Unzip Ubuntu edgy *
Unzip Ubuntu feisty *

References