Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

IRIX fsr_efs Symlink Vulnerability

A vulnerability has been discovered in the fsr_efs utility available on IRIX operating systems.

fsr_efs writes information regarding the filesystem to /var/tmp/.fsrlast, which it later references when run again, to see where filesystem reorganization left off. Reportedly fsr_efs incorrectly follows symlinks when accessing the /var/tmp/fsrlast file.

Critical files which are writeable by the fsr_efs process may be corrupted, resulting in a denial of service.







 

Privacy Statement
Copyright 2008, SecurityFocus