Shorewall Insecure Temporary File Handling Symbolic Link Vulnerability

Bugtraq ID: 10682
Class: Access Validation Error
CVE:
Remote: No
Local: Yes
Published: Jun 28 2004 12:00AM
Updated: Jun 28 2004 12:00AM
Credit: Discovery is credited to Javier Fernández-Sanguino.
Vulnerable: Shorewall Shorewall 2.0.3
Shorewall Shorewall 2.0.2
Shorewall Shorewall 2.0.1
+ Mandriva Linux Mandrake 10.0 AMD64
+ Mandriva Linux Mandrake 10.0
Shorewall Shorewall 2.0
Shorewall Shorewall 1.4.10
Shorewall Shorewall 1.4.9
Shorewall Shorewall 1.4.8
+ MandrakeSoft Corporate Server 2.1
+ Mandriva Linux Mandrake 9.2 amd64
+ Mandriva Linux Mandrake 9.2
Shorewall Shorewall 1.4.7
Shorewall Shorewall 1.4.6
Shorewall Shorewall 1.4.5
Shorewall Shorewall 1.4.4
Shorewall Shorewall 1.4.3 a
Shorewall Shorewall 1.4.3
Shorewall Shorewall 1.4.2
Shorewall Shorewall 1.4.1
Shorewall Shorewall 1.4
Shorewall Shorewall 1.3.14
+ Mandriva Linux Mandrake 9.1 ppc
+ Mandriva Linux Mandrake 9.1
Shorewall Shorewall 1.3.11
+ MandrakeSoft Multi Network Firewall 2.0
Shorewall Shorewall 1.3.7 c
+ MandrakeSoft Corporate Server 2.1 x86_64
+ MandrakeSoft Corporate Server 2.1
Shorewall Shorewall 1.2.9
+ MandrakeSoft Multi Network Firewall 2.0
Not Vulnerable: Shorewall Shorewall 2.0.3 a
Shorewall Shorewall 1.4.10 f


 

Privacy Statement
Copyright 2010, SecurityFocus