CVE-2008-3524

rc.sysinit in initscripts before 8.76.3-1 on Fedora 9 and other Linux platforms allows local users to delete arbitrary files via a symlink attack on a file or directory under (1) /var/lock or (2) /var/run.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:redhat:fedora:9:*:*:*:*:*:*:*
cpe:2.3:a:redhat:initscripts:8.76.3:*:*:*:*:*:*:*

History

No history.

Information

Published : 2008-09-29 17:17

Updated : 2024-02-04 17:33


NVD link : CVE-2008-3524

Mitre link : CVE-2008-3524

CVE.ORG link : CVE-2008-3524


JSON object : View

Products Affected

redhat

  • initscripts
  • fedora
CWE
CWE-59

Improper Link Resolution Before File Access ('Link Following')