Tarantella Enterprise 3 gunzip Race...

- AV AC AU C I A
发布: 2002-01-26
修订: 2025-04-13

Tarantella Enterprise 3 is vulnerable to a race condition during the installation process. During installation, a root owned binary is created in /tmp (the directory specified by the $TMPDIR environment variable) with the name gunzip#### where #### is a PID. Prior to it being invoked by the installation program it can be overwritten by a local user. This is then run by the installation program with root privileges. An attacker can only gain privileges in this manner if a privileged user is installing the software.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息