CVE-2004-1349

Severity
2.1LOW
EPSS
0.1%
top 78.50%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 4
Latest updateApr 29

Description

gzip before 1.3 in Solaris 8, when called with the -f or -force flags, will change the permissions of files that are hard linked to the target files, which allows local users to view or modify these files.

CVSS vector

AV:L/AC:L/C:P/I:N/A:NExploitability: 3.9 | Impact: 2.9

Affected Packages2 packages

NVDgnu/gzip< 1.3

Patches

🔴Vulnerability Details

2
GHSA
GHSA-2575-c77r-rr97: gzip before 12022-04-29
CVEList
CVE-2004-1349: gzip before 12005-01-19

📋Vendor Advisories

1
Debian
CVE-2004-1349: gzip - gzip before 1.3 in Solaris 8, when called with the -f or -force flags, will chan...2004