Back

LOW

dbus: Possibility of symlink attack in /tmp during compilation

Published Jun 22, 2011

Description

The configure script in D-Bus (aka DBus) 1.2.x before 1.2.28 allows local users to overwrite arbitrary files via a symlink attack on an unspecified file in /tmp/.

Affected products

Remediation

Red Hat statement

This issue is compile-time only and does not affect binary dbus packages, shipped in Red Hat Enterprise Linux 5 and 6. We therefore currently have no plans to fix this flaw in Red Hat Enterprise Linux 5 and 6.

Metrics

Weaknesses (1)

References (7)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Jun 22, 2011
Updated Aug 6, 2024
Reserved Jun 22, 2011
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Low
Public date Jun 10, 2011