CVE-2005-2180

Currently unrated

Key Information:

Vendor
Gnu
Status
Vendor
CVE Published:
11 July 2005

Summary

gen-index in GNATS 4.0, 4.1.0, and possibly earlier versions, when installed setuid, does not properly check files passed to the -o argument and opens the file with write access, which allows local users to overwrite arbitrary files.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.