SuSE 3Ddiag Insecure Temporary File Handling Symbolic Link Vulnerability
BID:9434
Info
SuSE 3Ddiag Insecure Temporary File Handling Symbolic Link Vulnerability
| Bugtraq ID: | 9434 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Jan 15 2004 12:00AM |
| Updated: | Jan 15 2004 12:00AM |
| Credit: | Discovery of this issue has been credited to Stefan Nordhausen <[email protected]> |
| Vulnerable: |
S.u.S.E. 3Ddiag |
| Not Vulnerable: | |
Discussion
SuSE 3Ddiag Insecure Temporary File Handling Symbolic Link Vulnerability
A vulnerability has been found in the handling of temporary files by the 3Ddiag tool in the SuSE Linux distribution. This issue may allow local destruction of data on affected systems potentially leading to loss of sensitive data or denial of service.
A vulnerability has been found in the handling of temporary files by the 3Ddiag tool in the SuSE Linux distribution. This issue may allow local destruction of data on affected systems potentially leading to loss of sensitive data or denial of service.
Exploit / POC
SuSE 3Ddiag Insecure Temporary File Handling Symbolic Link Vulnerability
No exploit is required for this vulnerability.
No exploit is required for this vulnerability.
Solution / Fix
SuSE 3Ddiag Insecure Temporary File Handling Symbolic Link Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.