CVE-1999-1091
N/A
N/A
Summary
UNIX news readers tin and rtin create the /tmp/.tin_log file with insecure permissions and follow symlinks, which allows attackers to modify the permissions of files writable by the user via a symlink attack.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://marc.info/?l=bugtraq&m=87602167419835&w=2
- https://exchange.xforce.ibmcloud.com/vulnerabilities/431
- http://marc.info/?l=bugtraq&m=87602167419839&w=2
- http://marc.info/?l=bugtraq&m=87602167420726&w=2
References
- http://marc.info/?l=bugtraq&m=87602167419835&w=2
- https://exchange.xforce.ibmcloud.com/vulnerabilities/431
- http://marc.info/?l=bugtraq&m=87602167419839&w=2
- http://marc.info/?l=bugtraq&m=87602167420726&w=2
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.