Vulnerabilities > CVE-2005-4802 - Unspecified vulnerability in Flexbackup
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN flexbackup
nessus
Summary
Flexbackup 1.2.1 and earlier allows local users to overwrite files and execute code via a symlink attack on temporary files. NOTE: the raw source referenced an incorrect candidate number; this is the correct number to use.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Nessus
NASL family | Debian Local Security Checks |
NASL id | DEBIAN_DSA-1216.NASL |
description | Eric Romang discovered that the flexbackup backup tool creates temporary files in an insecure manner, which allows denial of service through a symlink attack. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 23702 |
published | 2006-11-22 |
reporter | This script is Copyright (C) 2006-2019 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/23702 |
title | Debian DSA-1216-1 : flexbackup - insecure temporary file |
code |
|
References
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=334350
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=334350
- http://marc.info/?l=bugtraq&m=112958392512513&w=2
- http://marc.info/?l=bugtraq&m=112958392512513&w=2
- http://secunia.com/advisories/17209
- http://secunia.com/advisories/17209
- http://secunia.com/advisories/23008
- http://secunia.com/advisories/23008
- http://securitytracker.com/id?1015068
- http://securitytracker.com/id?1015068
- http://www.debian.org/security/2006/dsa-1216
- http://www.debian.org/security/2006/dsa-1216
- http://www.zataz.net/adviso/flexbackup-09192005.txt
- http://www.zataz.net/adviso/flexbackup-09192005.txt