4.6

CVE-2004-0581

ksymoops-gznm script in Mandrake Linux 9.1 through 10.0, and Corporate Server 2.1, allows local users to delete arbitrary files via a symlink attack on files in /tmp.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Gnu ≫ Ksymoops Version 2.4.5
Gnu ≫ Ksymoops Version 2.4.8
Gnu ≫ Ksymoops Version 2.4.9
Mandrakesoft ≫ Mandrake Linux Version 9.1
Mandrakesoft ≫ Mandrake Linux Version 9.1 Edition ppc
Mandrakesoft ≫ Mandrake Linux Version 9.2
Mandrakesoft ≫ Mandrake Linux Version 9.2 Edition amd64
Mandrakesoft ≫ Mandrake Linux Version 10.0
Mandrakesoft ≫ Mandrake Linux Version 10.0 Edition amd64
Mandrakesoft ≫ Mandrake Linux Corporate Server Version 2.1 Edition x86_64
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.37% 0.289
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 4.6 3.9 6.4
AV:L/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.mandrakesecure.net/en/advisories/advisory.php?name=MDKSA-2004:060
http://www.securityfocus.com/bid/10516
Patch
Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/16392