CVE
- Id
- 4555
- CVE No.
- CVE-2002-0162
- Status
- Candidate
- Description
- LogWatch before 2.5 allows local users to execute arbitrary code via a symlink attack on the logwatch temporary directory.
- Phase
- Modified (20020817-01)
- Votes
- ACCEPT(4) Armstrong, Cole, Cox, Green | MODIFY(1) Frech | NOOP(3) Christey, Foat, Wall
- Comments
- Christey> Modify the desc: it"s temporary *directory* creation. | | XF:logwatch-tmp-race-condition(8652) | URL:http://www.iss.net/security_center/static/8652.php | BID:4374 | URL:http://online.securityfocus.com/bid/4374 | Frech> XF:logwatch-tmp-race-condition(8652)