CVE-2004-0423 Information

Description

The log_event function in ssmtp 2.50.6 and earlier allows local users to overwrite arbitrary files via a symlink attack on the ssmtp.log temporary log file.

Reference

http://marc.info/?l=bugtraq&m=108239608131119&w=2

Share on: