Oval Definition:oval:org.mitre.oval:def:765
Revision Date:2009-08-03Version:18
Title:GNU GZip CHMod File Permission Modification Race ConditionWeakness
Description:Race condition in gzip 1.2.4, 1.3.3, and earlier, when decompressing a gzipped file, allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by gzip after the decompression is complete.
Family:unixClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2005-0988
Platform(s):Sun Solaris 10
Sun Solaris 8
Sun Solaris 9
Product(s):gzip
Definition Synopsis
  • Solaris 8 (SPARC) meets Sun Alert ID 101816 criteria.
  • Solaris 8 Installed
  • AND sparc architecture
  • AND NOT Patch 112668-03 or later installed
  • OR Solaris 8 (x86) meets Sun Alert ID 101816 criteria.
  • Solaris 8 Installed
  • AND ix86 architecture
  • AND NOT Patch 112669-03 or later installed
  • OR Solaris 9 (SPARC) meets Sun Alert ID 101816 criteria.
  • Solaris 9 Installed
  • AND sparc architecture
  • AND NOT Patch 116340-04 or later installed
  • OR Solaris 9 (x86) meets Sun Alert ID 101816 criteria.
  • Solaris 9 Installed
  • AND ix86 architecture
  • AND NOT Patch 116341-04 or later installed
  • OR Solaris 10 (SPARC) meets Sun Alert ID 101816 criteria.
  • Solaris 10 Installed
  • AND sparc architecture
  • AND NOT Patch 120719-01 or later installed
  • OR Solaris 10 (x86) meets Sun Alert ID 101816 criteria.
  • Solaris 10 Installed
  • AND ix86 architecture
  • AND NOT Patch 120720-01 or later installed
  • BACK