Vulnerability Description
Race condition in gzip 1.2.4, 1.3.3, and earlier, when decompressing a gzipped file, allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by gzip after the decompression is complete.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Gnu | Gzip | 1.2.4 |
| Freebsd | Freebsd | 4.0 |
| Gentoo | Linux | All versions |
| Redhat | Enterprise Linux | 2.1 |
| Redhat | Enterprise Linux Desktop | 3.0 |
| Redhat | Linux Advanced Workstation | 2.1 |
| Trustix | Secure Linux | 2.0 |
| Turbolinux | Turbolinux Appliance Server | 1.0_hosting |
| Turbolinux | Turbolinux Desktop | 10.0 |
| Turbolinux | Turbolinux Home | All versions |
| Turbolinux | Turbolinux Server | 7.0 |
| Turbolinux | Turbolinux Workstation | 7.0 |
| Ubuntu | Ubuntu Linux | 4.1 |
References
- ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2005.58/SCOSA-2005.58.txt
- http://lists.apple.com/archives/security-announce/2006//Aug/msg00000.html
- http://rhn.redhat.com/errata/RHSA-2005-357.html
- http://secunia.com/advisories/18100
- http://secunia.com/advisories/21253
- http://secunia.com/advisories/22033
- http://slackware.com/security/viewer.php?l=slackware-security&y=2006&m=slackware
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-101816-1
- http://www.debian.org/security/2005/dsa-752
- http://www.osvdb.org/15487
- http://www.securityfocus.com/archive/1/394965Vendor Advisory
- http://www.securityfocus.com/bid/12996Patch
- http://www.securityfocus.com/bid/19289
- http://www.us-cert.gov/cas/techalerts/TA06-214A.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2006/3101
FAQ
What is CVE-2005-0988?
CVE-2005-0988 is a vulnerability with a CVSS score of 3.7 (LOW). Race condition in gzip 1.2.4, 1.3.3, and earlier, when decompressing a gzipped file, allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being deco...
How severe is CVE-2005-0988?
CVE-2005-0988 has been rated LOW with a CVSS base score of 3.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-0988?
Check the references section above for vendor advisories and patch information. Affected products include: Gnu Gzip, Freebsd Freebsd, Gentoo Linux, Redhat Enterprise Linux, Redhat Enterprise Linux Desktop.