CVE-2000-1134
Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via a symlink attack.
- Immunix
- = 6.2
- Conectiva Linux
- = 4.0, 4.0es, 4.1, 4.2, 5.0, 5.1
- CVSS 2.0
- 7.2 HIGH
- EPSS
- 1.4% (71th percentile)
- NVD status
- Modified
- Published
- 2000-12-19
CVE-2000-1134 at NVD
2 known exploits for CVE-2000-1134
Proof-of-concept code and exploit modules indexed by Sploitus