UnixWare programs that dump core allow a local user to modify files via a symlink attack on the ./core.pid file.
Link | Tags |
---|---|
http://marc.info/?l=bugtraq&m=94581379905584&w=2 | mailing list |
http://www.securityfocus.com/bid/851 | vdb entry |
http://marc.info/?l=bugtraq&m=94530783815434&w=2 | mailing list |
http://marc.info/?l=bugtraq&m=94606167110764&w=2 | mailing list |
http://www.securityfocus.com/templates/archive.pike?list=1&msg=19991203020720.13115.qmail%40nwcst289.netaddress.usa.net | mailing list |