CVE-2010-1160
published 2010-04-16CVE-2010-1160: GNU nano before 2.2.4 does not verify whether a file has been changed before it is overwritten in a file-save operation, which allows local user-assisted…
PriorityP48low1.9CVSS 2.0
AVLACMAuNCNIPAN
EPSS
0.37%
29.0th percentile
GNU nano before 2.2.4 does not verify whether a file has been changed before it is overwritten in a file-save operation, which allows local user-assisted attackers to overwrite arbitrary files via a symlink attack on an attacker-owned file that is being edited by the victim.
Affected
146 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | nano | < nano 2.2.4-1 (bookworm) | nano 2.2.4-1 (bookworm) |
| gnu | nano | <= 2.2.3 | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
| gnu | nano | — | — |
CVSS provenance
nvdv2.01.9LOWAV:L/AC:M/Au:N/C:N/I:P/A:N
osv1.9LOW
vendor_debian1.9LOW
vendor_redhat1.9LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-9v2x-x2qc-4cfg: GNU nano before 2
ghsa_unreviewed·2022-05-02
CVE-2010-1160 [LOW] CWE-59 GHSA-9v2x-x2qc-4cfg: GNU nano before 2
GNU nano before 2.2.4 does not verify whether a file has been changed before it is overwritten in a file-save operation, which allows local user-assisted attackers to overwrite arbitrary files via a symlink attack on an attacker-owned file that is being edited by the victim.
OSV
CVE-2010-1160: GNU nano before 2
osv·2010-04-16·CVSS 1.9
CVE-2010-1160 [LOW] CVE-2010-1160: GNU nano before 2
GNU nano before 2.2.4 does not verify whether a file has been changed before it is overwritten in a file-save operation, which allows local user-assisted attackers to overwrite arbitrary files via a symlink attack on an attacker-owned file that is being edited by the victim.
Red Hat
nano: multiple file editing insecurities
vendor_redhat·2010-04-02·CVSS 1.9
CVE-2010-1160 [LOW] nano: multiple file editing insecurities
nano: multiple file editing insecurities
GNU nano before 2.2.4 does not verify whether a file has been changed before it is overwritten in a file-save operation, which allows local user-assisted attackers to overwrite arbitrary files via a symlink attack on an attacker-owned file that is being edited by the victim.
Statement: This issue was corrected in Red Hat Enterprise Linux 6 prior to its initial release.
Red Hat Enterprise Linux 5 is now in Production 3 Phase of the support and maintenance life cycle. This has been rated as having Low security impact and is not currently planned to be addressed in future updates for this or earlier releases. For additional information, refer to the Red Hat Enterprise Linux Life Cycle: https://access.redhat.com/support/policy/updates/errata/.
Packag
Debian
CVE-2010-1160: nano - GNU nano before 2.2.4 does not verify whether a file has been changed before it ...
vendor_debian·2010·CVSS 1.9
CVE-2010-1160 [LOW] CVE-2010-1160: nano - GNU nano before 2.2.4 does not verify whether a file has been changed before it ...
GNU nano before 2.2.4 does not verify whether a file has been changed before it is overwritten in a file-save operation, which allows local user-assisted attackers to overwrite arbitrary files via a symlink attack on an attacker-owned file that is being edited by the victim.
Scope: local
bookworm: resolved (fixed in 2.2.4-1)
bullseye: resolved (fixed in 2.2.4-1)
forky: resolved (fixed in 2.2.4-1)
sid: resolved (fixed in 2.2.4-1)
trixie: resolved (fixed in 2.2.4-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2010-1160, CVE-2010-1161 nano: multiple file editing insecurities [fedora-all]
bugzilla·2010-04-15·CVSS 1.9
CVE-2010-1160 [LOW] CVE-2010-1160, CVE-2010-1161 nano: multiple file editing insecurities [fedora-all]
CVE-2010-1160, CVE-2010-1161 nano: multiple file editing insecurities [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
Forr more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include the bug IDs of the
respective parent bugs filed against the "Security Response" product.
Please mention CVE ids in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?type_=security&bugs=582434
Please note: this issue affects
Bugzilla
CVE-2010-1160 CVE-2010-1161 nano: multiple file editing insecurities
bugzilla·2010-04-14·CVSS 1.9
CVE-2010-1160 [LOW] CVE-2010-1160 CVE-2010-1161 nano: multiple file editing insecurities
CVE-2010-1160 CVE-2010-1161 nano: multiple file editing insecurities
Dan Rosenberg reported [1] two vulnerabilities in GNU nano:
When editing a file that is owned by another user, the owner of the file could replace the file in mid-edit with a symbolic link, resulting in the editor overwriting the target of the symbolic link with the privileges of the user editing the file, without any warning to the editor. (CVE-2010-1160; fixed upstream in r4490)
When backup files are enabled, and root is editing a file owned by an untrusted user, that user could exploit race conditions in the creation of backup files to take ownership of arbitrary files. (CVE-2010-1161; fixed upstream in r4491, r4493, r4496)
Patches [2], [3], [4] are available to correct both issues.
[1] http://article.gmane.org/gm
http://drosenbe.blogspot.com/2010/03/nano-as-root.htmlhttp://lists.gnu.org/archive/html/nano-devel/2010-04/msg00000.htmlhttp://secunia.com/advisories/39444http://svn.savannah.gnu.org/viewvc/trunk/nano/ChangeLog?revision=4503&root=nano&view=markuphttp://www.openwall.com/lists/oss-security/2010/04/14/4http://www.securitytracker.com/id?1023891http://drosenbe.blogspot.com/2010/03/nano-as-root.htmlhttp://lists.gnu.org/archive/html/nano-devel/2010-04/msg00000.htmlhttp://secunia.com/advisories/39444http://svn.savannah.gnu.org/viewvc/trunk/nano/ChangeLog?revision=4503&root=nano&view=markuphttp://www.openwall.com/lists/oss-security/2010/04/14/4http://www.securitytracker.com/id?1023891
2010-04-16
Published