Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2002-1669

Overview

Vulnerability Score 2.1 2.1
CVE Id CVE-2002-1669
Last Modified 05 Sep 2008 04:31:12
Published 31 Dec 2002 12:00:00
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector LOCAL
Access Complexity LOW
Authentication NONE

CVE-2002-1669

Summary

pkg_add in FreeBSD 4.2 through 4.4 creates a temporary directory with world-searchable permissions, which may allow local users to modify world-writable parts of the package during installation.

Vulnerable Systems

Operating System

  • Freebsd 4.2

  • Freebsd 4.3

  • Freebsd 4.4


References

XF - freebsd-pkgadd-insecure-directory(7852)

BID - 3819

FREEBSD - FreeBSD-SA-02:01


Last Updated: 27 May 2016 10:37:26