vendor:
Digital UNIX
by:
SecurityFocus
7.2
CVSS
HIGH
Symlink Vulnerability
59
CWE
Product Name: Digital UNIX
Affected Version From: Digital UNIX 4.0
Affected Version To: Digital UNIX 4.0
Patch Exists: YES
Related CWE: N/A
CPE: o:digital:digital_unix:4.0
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
1996
Digital UNIX 4.0 Core File Symlink Vulnerability
Digital UNIX 4.0 will follow symlinks while writting core files if two setuid programs dump core in sucession. The core file is owned by root but with the user's groud id. The core file permissions are 0600. This can be used to create root owned file anywhere in the filesystem.
Mitigation:
Ensure that core files are not created in a world-writable directory.