mgetty /tmp File Race Condition...

- AV AC AU C I A
发布: 2001-01-10
修订: 2025-04-13

mgetty is a freely available, publicly maintained software package designed to handle dialin and fax services on the Linux Operating System. A problem exists with could allow a symbolic link attack. The problem occurs in the handling of files created in the /tmp directory. During execution of the program, files are created in the /tmp directory. However, these files are created in an insecure manner, which makes it possible to guess the filename of a future /tmp file. This makes it possible for a user with malicious motives to create a number of symbolic links in the /tmp directory, and potentially append to or overwrite system files that are write-accessible to the UID executing mgetty, normally root.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息