Vulnerability Name:

CVE-2004-0108 (CCN-15437)

Assigned:2004-03-10
Published:2004-03-10
Updated:2017-10-10
Summary:The isag utility, which processes sysstat data, allows local users to overwrite arbitrary files via a symlink attack on temporary files, a different vulnerability than CAN-2004-0107.
CVSS v3 Severity:4.0 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): High
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:4.6 Medium (CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
2.6 Low (CCN CVSS v2 Vector: AV:L/AC:H/Au:N/C:N/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): High
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-Other
Vulnerability Consequences:File Manipulation
References:Source: SGI
Type: Patch
20040302-01-U

Source: MITRE
Type: CNA
CVE-2004-0108

Source: CCN
Type: sysstat Web page
Sysstat Home Page

Source: CCN
Type: RHSA-2004-053
sysstat security update

Source: CCN
Type: CIAC Information Bulletin O-097
Red Hat Sysstat Packages contain Vulnerability

Source: DEBIAN
Type: UNKNOWN
DSA-460

Source: DEBIAN
Type: DSA-460
sysstat -- insecure temporary file

Source: CCN
Type: GLSA-200404-04
Multiple vulnerabilities in sysstat

Source: CCN
Type: Trustix Secure Linux Security Advisory #2004-0011
sysstat

Source: CCN
Type: GLSA 200404-04
Multiple vulnerabilities in sysstat

Source: REDHAT
Type: Patch, Vendor Advisory
RHSA-2004:053

Source: BID
Type: Patch, Vendor Advisory
9844

Source: CCN
Type: BID-9844
Sysstat Isag Temporary File Creation Vulnerability

Source: XF
Type: UNKNOWN
sysstat-isag-symlink(15437)

Source: XF
Type: UNKNOWN
sysstat-isag-symlink(15437)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:redhat:sysstat:4.0.7-3:*:i386:*:*:*:*:*
  • OR cpe:/a:sgi:propack:2.3:*:*:*:*:*:*:*
  • OR cpe:/a:sgi:propack:2.4:*:*:*:*:*:*:*
  • OR cpe:/a:sysstat:sysstat:4.0.7:*:*:*:*:*:*:*
  • OR cpe:/a:sysstat:sysstat:4.1.1:*:*:*:*:*:*:*
  • OR cpe:/a:sysstat:sysstat:4.1.2:*:*:*:*:*:*:*
  • OR cpe:/a:sysstat:sysstat:4.1.3:*:*:*:*:*:*:*
  • OR cpe:/a:sysstat:sysstat:4.1.4:*:*:*:*:*:*:*
  • OR cpe:/a:sysstat:sysstat:4.1.5:*:*:*:*:*:*:*
  • OR cpe:/a:sysstat:sysstat:4.1.6:*:*:*:*:*:*:*
  • OR cpe:/a:sysstat:sysstat:4.1.7:*:*:*:*:*:*:*
  • OR cpe:/a:sysstat:sysstat:5.0.1:*:*:*:*:*:*:*

  • Configuration RedHat 1:
  • cpe:/o:redhat:enterprise_linux:*:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:20040108
    V
    CVE-2004-0108
    2015-11-16
    oval:org.mitre.oval:def:9698
    V
    The isag utility, which processes sysstat data, allows local users to overwrite arbitrary files via a symlink attack on temporary files, a different vulnerability than CAN-2004-0107.
    2013-04-29
    oval:com.redhat.rhsa:def:20040053
    P
    RHSA-2004:053: sysstat security update (Moderate)
    2004-03-10
    oval:org.debian:def:460
    V
    insecure temporary file
    2004-03-10
    BACK
    redhat sysstat 4.0.7-3
    sgi propack 2.3
    sgi propack 2.4
    sysstat sysstat 4.0.7
    sysstat sysstat 4.1.1
    sysstat sysstat 4.1.2
    sysstat sysstat 4.1.3
    sysstat sysstat 4.1.4
    sysstat sysstat 4.1.5
    sysstat sysstat 4.1.6
    sysstat sysstat 4.1.7
    sysstat sysstat 5.0.1