S.u.S.E. Linux任意文件删除漏洞

admin 2022-07-18 10:00:56 CNNVD漏洞 来源:ZONE.CI 全球网 0 阅读模式


S.u.S.E. Linux任意文件删除漏洞

  • CNNVD编号:CNNVD-200005-014
  • 危害等级: 低危
  • CVE编号: CVE-2000-0293
  • 漏洞类型: 访问验证错误
  • 发布时间: 2000-05-02
  • 威胁类型: 本地
  • 更新时间: 2005-10-20
  • 厂        商: suse
  • 漏洞来源: ');">This vulnerability...


SuSE Linux 6.3的aaa_base和早期版本的cron.daily 存在漏洞,本地用户可以通过生成包含空格文件名的文件删除任意文件。此时在从/tmp目录下删除过期文件时aaa_base便不能正确解析,


A patch was included in the Bugtraq post which reported this problem. Updated RPM's have been provided by SuSE for versions 6.2, 6.3 and 6.4. It has been reported that the update for 6.2 was not effective, and as such, those running version 6.2 of SuSE Linux are still susceptible. It is not clear if the fixes for 6.3 and 6.4 were effective. The original information provided by SuSE was innaccurate; no fixes were present in the packages they claimed fixed this vulnerability. A later advisory by them resolved the problem. S.u.S.E. Linux 6.1 alpha

  • S.u.S.E. 6.1 aaa_base-2000.5.2-0.alpha.rpm ftp://ftp.suse.com/pub/suse/axp/update/6.1/a1/aaa_base-2000.5.2-0.alph a.rpm
S.u.S.E. Linux 6.1
  • S.u.S.E. 6.1 aaa_base-2000.5.2-0.i386.rpm ftp://ftp.suse.com/pub/suse/i386/update/6.1/a1/aaa_base-2000.5.2-0.i38 6.rpm
S.u.S.E. Linux 6.2
  • S.u.S.E. 6.2 aaa_base-2000.5.2-0.i386.rpm ftp://ftp.suse.com/pub/suse/i386/update/6.2/a1/aaa_base-2000.5.2-0.i38 6.rpm
S.u.S.E. Linux 6.3
  • [email protected] aaa_base.patch http://www.securityfocus.com/data/vulnerabilities/patches/aaa_base.pat ch
  • S.u.S.E. 6.3 aaa_base-2000.5.2-0.i386.rpm ftp://ftp.suse.com/pub/suse/i386/update/6.3/a1/aaa_base-2000.5.2-0.i38 6.rpm
S.u.S.E. Linux 6.3 alpha
  • S.u.S.E. 6.3 aaa_base-2000.5.2-0.alpha.rpm ftp://ftp.suse.com/pub/suse/axp/update/6.3/a1/aaa_base-2000.5.2-0.alph a.rpm
S.u.S.E. Linux 6.4
  • S.u.S.E. 6.4 aaa_base-2000.5.2-0.i386.rpm ftp://ftp.suse.com/pub/suse/i386/update/6.4/a1/aaa_base-2000.5.2-0.i38 6.rpm


来源: BID 名称: 1130 链接:http://www.securityfocus.com/bid/1130


  • Suse Suse_linux:6.0  
  • Suse Suse_linux:6.1  
  • Suse Suse_linux:6.1:Alpha  
  • Suse Suse_linux:6.2  
  • Suse Suse_linux:6.3  



评论:0   参与:  0