Lynis '/tmp' Symlink Vulnerability
BID:67844
Info
Lynis '/tmp' Symlink Vulnerability
| Bugtraq ID: | 67844 |
| Class: | Race Condition Error |
| CVE: |
CVE-2014-3986 |
| Remote: | No |
| Local: | Yes |
| Published: | Jun 04 2014 12:00AM |
| Updated: | Apr 13 2015 09:52PM |
| Credit: | A B |
| Vulnerable: |
Rootkit.nl Lynis 1.5.4 |
| Not Vulnerable: | |
Discussion
Lynis '/tmp' Symlink Vulnerability
Lynis is prone to a symlink vulnerability.
Local attackers can exploit this issue to gain elevated privileges on affected computers.
Lynis 1.5.4 is vulnerable; other versions may also affected.
Lynis is prone to a symlink vulnerability.
Local attackers can exploit this issue to gain elevated privileges on affected computers.
Lynis 1.5.4 is vulnerable; other versions may also affected.
Solution / Fix
Lynis '/tmp' Symlink Vulnerability
Solution:
Currently we are not aware of any vendor supplied patches. If you feel we are in error or if you are aware of any more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor supplied patches. If you feel we are in error or if you are aware of any more recent information, please mail us at: [email protected].