Sun Microsystems Inc. Information for VU#405955
util-linux package vulnerable to privilege escalation when "ptmptmp" file is not removed properly when using "chfn" utility
- Vendor Information Help Date Notified: 26 Jun 2002
- Statement Date:
- Date Updated: 17 Jul 2002
Status
Affected
Vendor Statement
This issue affects the following Sun Cobalt platforms:
Sun Cobalt RaQ
Sun Cobalt RaQ 2
Sun Cobalt RaQ 3
Sun Cobalt RaQ 4
Sun Cobalt RaQ 550
Sun Cobalt RaQ XTR
Sun Cobalt Cache RaQ series
Sun Cobalt Qube
Sun Cobalt Qube 2
Sun Cobalt Qube 3
Sun Cobalt Control Station
Sun Cobalt are generating patches for this issue presently which will be
available for download from:
http://sunsolve.sun.com/patches/cobalt
A SunAlert will be published which details the issue and the patch
information which will be available from:
http://sunsolve.sun.com/
Vendor Information
The vendor has not provided us with any further information regarding this vulnerability.
Vendor References
None
Addendum
The CERT/CC has no additional comments at this time.
If you have feedback, comments, or additional information about this vulnerability, please send us email.