|
IRIX fsr_efs Symlink Vulnerability
A vulnerability has been discovered in the fsr_efs utility available on IRIX operating systems. fsr_efs writes information regarding the filesystem to /var/tmp/.fsrlast, which it later references when run again, to see where filesystem reorganization left off. Reportedly fsr_efs incorrectly follows symlinks when accessing the /var/tmp/fsrlast file. Critical files which are writeable by the fsr_efs process may be corrupted, resulting in a denial of service. |
|
|
Privacy Statement |