CVE-2002-0211
N/A
N/A
Summary
Race condition in the installation script for Tarantella Enterprise 3 3.01 through 3.20 creates a world-writeable temporary "gunzip" program before executing it, which could allow local users to execute arbitrary commands by modifying the program before it is executed.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.securityfocus.com/bid/3966
- http://marc.info/?l=bugtraq&m=101208650722179&w=2
- http://online.securityfocus.com/archive/1/265845
- http://www.tarantella.com/security/bulletin-04.html
- http://www.iss.net/security_center/static/7996.php
References
- http://www.securityfocus.com/bid/3966
- http://marc.info/?l=bugtraq&m=101208650722179&w=2
- http://online.securityfocus.com/archive/1/265845
- http://www.tarantella.com/security/bulletin-04.html
- http://www.iss.net/security_center/static/7996.php
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.