The fn_show_postinst function in Gentoo webapp-config before 1.10-r14 allows local users to overwrite arbitrary files via a symlink attack on the postinst.txt temporary file.
References
Configurations
History
No history.
Information
Published : 2005-05-24 04:00
Updated : 2011-03-08 02:22
NVD link : CVE-2005-1707
Mitre link : CVE-2005-1707
CVE.ORG link : CVE-2005-1707
JSON object : View
Products Affected
gentoo
- linux_webapp-config
CWE