Oval Definition:
oval:org.mitre.oval:def:345
Revision Date
:
2005-09-21
Version
:
3
Title
:
shtool Race Condition
Description
:
Race condition in shtool 2.0.1 and earlier allows local users to create or modify arbitrary files via a symlink attack on the .shtool.$$ temporary file, a different vulnerability than CVE-2005-1759.
Family
:
unix
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2005-1751
Platform(s)
:
Red Hat Enterprise Linux 3
Product(s)
:
php
Definition Synopsis
Software section
Red Hat Enterprise 3 is installed
AND
php RPM prior to 0:4.3.2-24.ent
AND
Configuration section
/tmp is writable by everyone
BACK