Vulnerabilities > CVE-2001-1277 - Local Security vulnerability in Makewhatis

047910
CVSS 2.1 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
local
low complexity
wolfram-schneider

Summary

makewhatis in the man package before 1.5i2 allows an attacker in group man to overwrite arbitrary files via a man page whose name contains shell metacharacters.

Vulnerable Configurations

Part Description Count
Application
Wolfram_Schneider
1

Redhat

advisories
rhsa
idRHSA-2001:072