CVE-2001-1494
script command in the util-linux package before 2.11n allows local users to overwrite arbitrary files by setting a hardlink from the typescript log file to any file on the system, then having root execute the script command.
Open
LOW (3.4)- T
Tim Bastin detected CVE-2001-1494 with a risk of 3.35
System updated the risk assessment to 1.67
System recalculated raw risk assessment
System updated the risk assessment to 3.35
System recalculated raw risk assessment
System updated the risk assessment to 1.67
System recalculated raw risk assessment
System updated the risk assessment from 1.67 to 3.35
System recalculated raw risk assessment
System fixed CVE-2001-1494
System detected CVE-2001-1494 with a risk of 3.35
Add a comment
Last calculated at:
Affected component
debian/util-linux
Quick Fix
Update all Dependencies
Update only debian/util-linux