Ubuntu Security Notice 100-1...

- AV AC AU C I A
发布: 2005-03-25
修订: 2025-04-13

Ubuntu Security Notice USN-100-1 - Javier Fernandez-Sanguino Pena noticed that cdrecord created temporary files in an insecure manner if DEBUG was enabled in /etc/cdrecord/rscsi. If the default value was used (which stored the debug output file in /tmp), this could allow a symbolic link attack to create or overwrite arbitrary files with the privileges of the user invoking cdrecord.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息