Vmware符号链接漏洞

漏洞信息详情

Vmware符号链接漏洞

漏洞简介

VMWare 1.1.2版本存在漏洞。本地用户可以借助符号链接攻击引发拒绝服务。

漏洞公告

Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: vuldb@securityfocus.com.
VMWare does however let allow you to set the location of your temporary directory for it’s file creation via the $TMPDIR environment variable. Therefore you may wish to set your $TMPDIR variable to something with more stringent permissions, such as a sub-directory off your own home directory ($HOME).

参考网址

来源: BID
名称: 943
链接:http://www.securityfocus.com/bid/943

来源: OSVDB
名称: 1205
链接:http://www.osvdb.org/1205

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享