Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

GZip ZNew Insecure Temporary File Creation Symbolic Link Vulnerability

It has been reported that gzip does not securely handle temporary files in the znew script. Because of this, a local attacker may be able to launch a symbolic link attack against sensitive files.







 

Privacy Statement
Copyright 2008, SecurityFocus