Fri May 3 12:17:25 PDT 2002
patches/packages/nautilus.tgz: Patched to fix metadata security problems.
       Nautilus was patched and recompiled to fix a problem which would allow a
       malicious user to mount a symlink attack to overwrite another user's files.
       Thanks to Joe Testa and Rapid 7, Inc. for finding this problem, and to
       Havoc Pennington for sharing Red Hat's backport of the CVS fixes with us.
       (* Security fix *)

Slackware: 'nautilus' Symlink attack vulnerability

May 14, 2002
autilus was patched and recompiled to fix a problem which would allow a malicious user to mount a symlink attack to overwrite another user's files.

Summary

Where Find New Packages

MD5 Signatures

Severity
Fri May 3 12:17:25 PDT 2002 patches/packages/nautilus.tgz: Patched to fix metadata security problems. Nautilus was patched and recompiled to fix a problem which would allow a malicious user to mount a symlink attack to overwrite another user's files. Thanks to Joe Testa and Rapid 7, Inc. for finding this problem, and to Havoc Pennington for sharing Red Hat's backport of the CVS fixes with us. (* Security fix *)

Installation Instructions

Related News