Local File Deletion Vulnerability in Lintian by Debian
CVE-2004-1000

Currently unrated

Key Information:

Vendor

Debian

Status
Vendor
CVE Published:
10 January 2004

What is CVE-2004-1000?

Lintian versions 1.23 and earlier are susceptible to a local file deletion vulnerability, where the tool inadvertently removes the working directory even if it was not created by Lintian. This flaw allows local users to exploit symlink attacks, enabling them to delete arbitrary files or directories on the system. Such behavior poses significant risks when unprivileged users can manipulate sensitive areas of the file system, leading to data loss or service disruption.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.