4.6
CVSSv2

CVE-2005-1064

Published: 10/04/2005 Updated: 18/10/2016
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The copy_symlink function in rsnapshot 1.2.0 and 1.1.x prior to 1.1.7 changes the ownership of files that a symlink points to rather than the symlink itself, which allows local users to obtain access to arbitrary files.

Vulnerable Product Search on Vulmon Subscribe to Product

rsnapshot filesystem snapshot utility 1.0.10

rsnapshot filesystem snapshot utility 1.1

rsnapshot filesystem snapshot utility 1.1.1

rsnapshot filesystem snapshot utility 1.1.4

rsnapshot filesystem snapshot utility 1.1.5

rsnapshot filesystem snapshot utility 1.1.2

rsnapshot filesystem snapshot utility 1.1.3

rsnapshot filesystem snapshot utility 1.1.6

rsnapshot filesystem snapshot utility 1.2