cbcvebase.
CVE-2009-4135
published 2009-12-11

CVE-2009-4135: The distcheck rule in dist-check.mk in GNU coreutils 5.2.1 through 8.1 allows local users to gain privileges via a symlink attack on a file in a directory tree…

medium4.4CVSS 3.1
AVLACMAuNCPIPAP
The distcheck rule in dist-check.mk in GNU coreutils 5.2.1 through 8.1 allows local users to gain privileges via a symlink attack on a file in a directory tree under /tmp.

Affected

33 ranges· showing 25
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debiancoreutils
fedoraprojectfedora
fedoraprojectfedora
gnucoreutils
gnucoreutils
gnucoreutils
gnucoreutils
gnucoreutils
gnucoreutils
gnucoreutils
gnucoreutils
gnucoreutils
gnucoreutils
gnucoreutils
gnucoreutils
gnucoreutils
gnucoreutils
gnucoreutils
gnucoreutils
gnucoreutils
gnucoreutils
gnucoreutils

CVSS provenance

nvd4.4MEDIUMAV:L/AC:M/Au:N/C:P/I:P/A:P
osv4.4MEDIUM