Vulnerabilities > Gentoo > Linux > Low

DATE CVE VULNERABILITY TITLE RISK
2005-03-01 CVE-2004-1030 Local vulnerability in Fcron FCronTab/FCronSighUp
fcronsighup in Fcron 2.0.1, 2.9.4, and possibly earlier versions allows local users to gain sensitive information by calling fcronsighup with an arbitrary file, which reveals the contents of the file that can not be parsed in an error message.
local
low complexity
thibault-godouet gentoo
2.1
2005-03-01 CVE-2004-1032 fcronsighup in Fcron 2.0.1, 2.9.4, and possibly earlier versions allows local users to delete arbitrary files or create arbitrary empty files via a target filename with a large number of leading slash (/) characters such that fcronsighup does not properly append the intended fcrontab.sig to the resulting string.
local
low complexity
thibault-godouet gentoo
2.1
2005-03-01 CVE-2004-1033 Local vulnerability in Fcron FCronTab/FCronSighUp
Fcron 2.0.1, 2.9.4, and possibly earlier versions leak file descriptors of open files, which allows local users to bypass access restrictions and read fcron.allow and fcron.deny via the EDITOR environment variable.
local
low complexity
thibault-godouet gentoo
2.1
2005-02-09 CVE-2004-0969 The groffer script in the Groff package 1.18 and later versions, as used in Trustix Secure Linux 1.5 through 2.1, and possibly other operating systems, allows local users to overwrite files via a symlink attack on temporary files.
local
low complexity
gnu gentoo ubuntu
2.1
2005-02-09 CVE-2004-0972 Insecure Temporary File Creation vulnerability in Trustix LVM Utilities
The lvmcreate_initrd script in the lvm package in Trustix Secure Linux 1.5 through 2.1, and possibly other operating systems, allows local users to overwrite files via a symlink attack on temporary files.
local
low complexity
lvm gentoo
2.1
2005-02-09 CVE-2004-0975 The der_chop script in the openssl package in Trustix Secure Linux 1.5 through 2.1 and other operating systems allows local users to overwrite files via a symlink attack on temporary files.
local
low complexity
mandrakesoft openssl gentoo
2.1
2005-01-27 CVE-2004-0880 getmail 4.x before 4.2.0, when run as root, allows local users to overwrite arbitrary files via a symlink attack on an mbox file.
local
high complexity
getmail gentoo slackware
1.2
2005-01-27 CVE-2004-0881 getmail 4.x before 4.2.0, and other versions before 3.2.5, when run as root, allows local users to write files in arbitrary directories via a symlink attack on subdirectories in the maildir.
local
low complexity
getmail gentoo slackware
2.1
2005-01-10 CVE-2004-0996 main.c in cscope 15-4 and 15-5 creates temporary files with predictable filenames, which allows local users to overwrite arbitrary files via a symlink attack.
local
low complexity
cscope debian gentoo sco
2.1
2005-01-10 CVE-2004-1107 Unspecified vulnerability in Gentoo Linux
dispatch-conf in Portage 2.0.51-r2 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files.
local
low complexity
gentoo
2.1