Tripwire Insecure Temporary File...

- AV AC AU C I A
发布: 2001-07-09
修订: 2025-04-13

Tripwire is an open source host-based intrusion detection system actively maintained by the Tripwire Development Team. Tripwire insecurely creates files using the mktemp() system call, and does not check for the existence of the file prior to attempting to create it. This makes it possible for a local user to launch a symbolic link attack. As a result, a malicious local user may be able to overwrite system files, creating a denial of service, or potentially gain elevated privileges.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息