Vulnerabilities > CVE-2004-0064 - Local Insecure File Creation Symlink vulnerability in Suse Linux 9.0

047910
CVSS 2.1 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
local
low complexity
suse
exploit available

Summary

The SuSEconfig.gnome-filesystem script for YaST in SuSE 9.0 allows local users to overwrite arbitrary files via a symlink attack on files within the tmp.SuSEconfig.gnome-filesystem.$RANDOM temporary directory.

Vulnerable Configurations

Part Description Count
OS
Suse
1

Exploit-Db

descriptionSuSE linux 9.0 YaST config Skribt Local Exploit. CVE-2004-0064. Local exploit for linux platform
idEDB-ID:144
last seen2016-01-31
modified2004-01-15
published2004-01-15
reporterl0om
sourcehttps://www.exploit-db.com/download/144/
titleSuSE Linux 9.0 - YaST config Skribt Local Exploit