Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 514
Alerts This Week
Warning Icon 1 514

Gentoo: GLSA 202310-01 High: eix Vulnerable File Operation Risk

gentoo
Calendar Grey November 22, 2005
Scroller Gentoo
eix possesses a vulnerability that enables local users to modify files. To minimize potential threats, ensure you upgrade to the most recent version.
eix has an insecure temporary file creation vulnerability, potentially allowing a local user to overwrite arbitrary files.

Summary

Gentoo Linux Security Advisory GLSA 200511-19 https://security.gentoo.org/ Severity: Normal Title: eix: Insecure temporary file creation Date: November 22, 2005 Bugs: #112061 ID: 200511-19

Synopsis ======= eix has an insecure temporary file creation vulnerability, potentially allowing a local user to overwrite arbitrary files.
Background ========= eix is a small utility for searching ebuilds with indexing for fast results.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 app-portage/eix < 0.5.0_pre2 >= 0.5.0_pre2 *>= 0.3.0-r2
========== Eric Romang discovered that eix creates a temporary file with...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Severity
important
Lowest
Low
Medium
High
Critical

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround