Local File Overwrite Vulnerability in GNATS by Savannah
CVE-2005-2180

Currently unrated

Key Information:

Vendor

Gnu

Status
Vendor
CVE Published:
11 July 2005

What is CVE-2005-2180?

GNATS versions 4.0 and 4.1.0, when configured with setuid, fail to secure the files specified with the -o argument in the gen-index utility. This oversight allows local users to gain unauthorized write access to files, potentially overwriting critical system files and compromising system integrity.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2005-2180 : Local File Overwrite Vulnerability in GNATS by Savannah