Oval Definition:
oval:org.mitre.oval:def:9523
Revision Date
:
2013-04-29
Version
:
11
Title
:
The catchsegv script in glibc 2.3.2 and earlier allows local users to overwrite files via a symlink attack on temporary files.
Description
:
The catchsegv script in glibc 2.3.2 and earlier allows local users to overwrite files via a symlink attack on temporary files.
Family
:
unix
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2004-0968
Platform(s)
:
CentOS Linux 3
Red Hat Enterprise Linux 3
Product(s)
:
Definition Synopsis
RHEL3 or CentOS3
The operating system installed on the system is Red Hat Enterprise Linux 3
OR
CentOS Linux 3.x
AND
Configuration section
glibc is earlier than 0:2.3.2-95.30
OR
glibc-utils is earlier than 0:2.3.2-95.30
OR
glibc-devel is earlier than 0:2.3.2-95.30
OR
nptl-devel is earlier than 0:2.3.2-95.30
OR
nscd is earlier than 0:2.3.2-95.30
OR
glibc-profile is earlier than 0:2.3.2-95.30
OR
glibc-common is earlier than 0:2.3.2-95.30
OR
glibc-headers is earlier than 0:2.3.2-95.30
BACK