RedHat Linux diskcheck Race...

- AV AC AU C I A
发布: 2000-12-05
修订: 2025-04-13

diskcheck.pl is a perl script included as part of the Red Hat Powertools suite, distributed by Red Hat Inc. A condition exists which could allow a user to corrupt arbitrary files on the system. The problem occurs in the creation of a file in the /tmp file system. diskcheck.pl is run hourly, and is designed to send an email to the administrator of the system if any filesystem on the system reaches 90% capacity. The mail generated is moved to a file in /tmp labelled diskusagealert.txt.$$, with $$ representing the process number of the job. Due to the design, it is possible for a malicious user to create a symbolic link to another file on the system to which write access is not permitted, and corrupt the integrity of the linked file.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息