The copy_symlink function in rsnapshot 1.2.0 and 1.1.x prior to 1.1.7 changes the ownership of files that a symlink points to rather than the symlink itself, which allows local users to obtain access to arbitrary files.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
rsnapshot filesystem snapshot utility 1.0.10 |
||
rsnapshot filesystem snapshot utility 1.1 |
||
rsnapshot filesystem snapshot utility 1.1.1 |
||
rsnapshot filesystem snapshot utility 1.1.4 |
||
rsnapshot filesystem snapshot utility 1.1.5 |
||
rsnapshot filesystem snapshot utility 1.1.2 |
||
rsnapshot filesystem snapshot utility 1.1.3 |
||
rsnapshot filesystem snapshot utility 1.1.6 |
||
rsnapshot filesystem snapshot utility 1.2 |