Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2001-1092

Overview

Vulnerability Score 2.1 2.1
CVE Id CVE-2001-1092
Last Modified 05 Sep 2008 04:25:40
Published 10 Sep 2001 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact NONE NONE
Availability Impact NONE NONE
Access Vector LOCAL
Access Complexity LOW
Authentication NONE

CVE-2001-1092

Summary

msgchk in Digital UNIX 4.0G and earlier allows a local user to read the first line of arbitrary files via a symlink attack on the .mh_profile file.

Vulnerable Systems

Operating System

  • Compaq Tru64 4.0d

  • Compaq Tru64 4.0e

  • Compaq Tru64 4.0f

  • Compaq Tru64 4.0g


References

CERT-VN - VU#440539

XF - du-msgchk-symlink(7102)

BID - 3320

BUGTRAQ - 20010910 Digital Unix 4.0x msgchk multiple vulnerabilities


Last Updated: 27 May 2016 10:36:31