CVE-2004-1349 Information

Description

gzip before 1.3 in Solaris 8 when called with the -f or -force flags will change the permissions of files that are hard linked to the target files which allows local users to view or modify these files.

Reference

http://secunia.com/advisories/12744 http://sunsolve.sun.com/search/document.do?assetkey=1-26-57600-1&searchclause=security http://www.kb.cert.org/vuls/id/635998 http://www.securityfocus.com/bid/11318 https://exchange.xforce.ibmcloud.com/vulnerabilities/17577 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A1654

Share on: