Vulnerability Description
SuSEconfig.susewm in the susewm package on SuSE Linux 8.2Pro allows local users to overwrite arbitrary files via a symlink attack on the susewm.$$ temporary file.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Suse | Suse Linux | 8.2 |
References
- http://marc.info/?l=bugtraq&m=106545972615578&w=2
- http://marc.info/?l=bugtraq&m=106546531922379&w=2
- http://marc.info/?l=bugtraq&m=106545972615578&w=2
- http://marc.info/?l=bugtraq&m=106546531922379&w=2
FAQ
What is CVE-2003-0847?
CVE-2003-0847 is a vulnerability with a CVSS score of 4.6 (MEDIUM). SuSEconfig.susewm in the susewm package on SuSE Linux 8.2Pro allows local users to overwrite arbitrary files via a symlink attack on the susewm.$$ temporary file.
How severe is CVE-2003-0847?
CVE-2003-0847 has been rated MEDIUM with a CVSS base score of 4.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2003-0847?
Check the references section above for vendor advisories and patch information. Affected products include: Suse Suse Linux.