FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2024-04-19 20:48:44 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
8c5ad0cf-ba37-11d9-837d-000e0c2e438arsnapshot -- local privilege escalation

An rsnapshot Advisory reports:

The copy_symlink() subroutine in rsnapshot incorrectly changes file ownership on the files pointed to by symlinks, not on the symlinks themselves. This would allow, under certain circumstances, an arbitrary user to take ownership of a file on the main filesystem.


Discovery 2005-04-10
Entry 2005-05-01
rsnapshot
< 1.1.7

13095
CVE-2005-1064
http://www.rsnapshot.org/security/2005/001.html