CVE-2009-3289

The g_file_copy function in glib 2.0 sets the permissions of a target file to the permissions of a symbolic link (777), which allows user-assisted local users to modify files of other users, as demonstrated by using Nautilus to modify the permissions of the user home directory.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:gnome:glib:2.0:*:*:*:*:*:*:*

Information

Published : 2009-09-22 03:30

Updated : 2010-05-19 22:44


NVD link : CVE-2009-3289

Mitre link : CVE-2009-3289


JSON object : View

CWE
CWE-264

Permissions, Privileges, and Access Controls

Advertisement

dedicated server usa

Products Affected

gnome

  • glib