CVE-2005-2995 Information
Feb 14, 2021
cve
Description
bacula 1.36.3 and earlier allows local users to modify or read sensitive files via symlink attacks on (1) the temporary file used by autoconf/randpass when openssl is not available or (2) the mtx.[PID] temporary file in mtx-changer.in.
Reference
http://bugs.gentoo.org/show_bug.cgi?id=104986 http://marc.info/?l=full-disclosure&m=112721654126735&w=2 http://www.novell.com/linux/security/advisories/2005_22_sr.html http://www.zataz.net/adviso/bacula-09192005.txt
Share on: