Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2005-0988


Race condition in gzip 1.2.4, 1.3.3, and earlier, when decompressing a gzipped file, allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by gzip after the decompression is complete.


Published

2005-05-02T04:00:00.000

Last Modified

2025-04-03T01:03:51.193

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 3.7 (LOW)

CVSSv2 Vector

AV:L/AC:H/Au:N/C:P/I:P/A:P

  • Access Vector: LOCAL
  • Access Complexity: HIGH
  • Authentication: NONE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: PARTIAL
  • Availability Impact: PARTIAL
Exploitability Score

1.9

Impact Score

6.4

Weaknesses
  • Type: Primary
    NVD-CWE-Other

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application gnu gzip 1.2.4 Yes
Application gnu gzip 1.2.4a Yes
Application gnu gzip 1.3.3 Yes
Operating System freebsd freebsd 4.0 Yes
Operating System freebsd freebsd 4.0 Yes
Operating System freebsd freebsd 4.0 Yes
Operating System freebsd freebsd 4.1 Yes
Operating System freebsd freebsd 4.1.1 Yes
Operating System freebsd freebsd 4.1.1 Yes
Operating System freebsd freebsd 4.1.1 Yes
Operating System freebsd freebsd 4.2 Yes
Operating System freebsd freebsd 4.2 Yes
Operating System freebsd freebsd 4.3 Yes
Operating System freebsd freebsd 4.3 Yes
Operating System freebsd freebsd 4.3 Yes
Operating System freebsd freebsd 4.3 Yes
Operating System freebsd freebsd 4.3 Yes
Operating System freebsd freebsd 4.4 Yes
Operating System freebsd freebsd 4.4 Yes
Operating System freebsd freebsd 4.4 Yes
Operating System freebsd freebsd 4.4 Yes
Operating System freebsd freebsd 4.5 Yes
Operating System freebsd freebsd 4.5 Yes
Operating System freebsd freebsd 4.5 Yes
Operating System freebsd freebsd 4.5 Yes
Operating System freebsd freebsd 4.5 Yes
Operating System freebsd freebsd 4.6 Yes
Operating System freebsd freebsd 4.6 Yes
Operating System freebsd freebsd 4.6 Yes
Operating System freebsd freebsd 4.6 Yes
Operating System freebsd freebsd 4.6 Yes
Operating System freebsd freebsd 4.6.2 Yes
Operating System freebsd freebsd 4.7 Yes
Operating System freebsd freebsd 4.7 Yes
Operating System freebsd freebsd 4.7 Yes
Operating System freebsd freebsd 4.7 Yes
Operating System freebsd freebsd 4.7 Yes
Operating System freebsd freebsd 4.8 Yes
Operating System freebsd freebsd 4.8 Yes
Operating System freebsd freebsd 4.8 Yes
Operating System freebsd freebsd 4.8 Yes
Operating System freebsd freebsd 4.9 Yes
Operating System freebsd freebsd 4.9 Yes
Operating System freebsd freebsd 4.9 Yes
Operating System freebsd freebsd 4.10 Yes
Operating System freebsd freebsd 4.10 Yes
Operating System freebsd freebsd 4.10 Yes
Operating System freebsd freebsd 4.10 Yes
Operating System freebsd freebsd 4.11 Yes
Operating System freebsd freebsd 4.11 Yes
Operating System freebsd freebsd 4.11 Yes
Operating System freebsd freebsd 5.0 Yes
Operating System freebsd freebsd 5.0 Yes
Operating System freebsd freebsd 5.0 Yes
Operating System freebsd freebsd 5.0 Yes
Operating System freebsd freebsd 5.1 Yes
Operating System freebsd freebsd 5.1 Yes
Operating System freebsd freebsd 5.1 Yes
Operating System freebsd freebsd 5.1 Yes
Operating System freebsd freebsd 5.1 Yes
Operating System freebsd freebsd 5.2 Yes
Operating System freebsd freebsd 5.2.1 Yes
Operating System freebsd freebsd 5.2.1 Yes
Operating System freebsd freebsd 5.3 Yes
Operating System freebsd freebsd 5.3 Yes
Operating System freebsd freebsd 5.3 Yes
Operating System freebsd freebsd 5.3 Yes
Operating System freebsd freebsd 5.4 Yes
Operating System freebsd freebsd 5.4 Yes
Operating System freebsd freebsd 5.4 Yes
Operating System gentoo linux * Yes
Operating System redhat enterprise_linux 2.1 Yes
Operating System redhat enterprise_linux 2.1 Yes
Operating System redhat enterprise_linux 2.1 Yes
Operating System redhat enterprise_linux 2.1 Yes
Operating System redhat enterprise_linux 2.1 Yes
Operating System redhat enterprise_linux 2.1 Yes
Operating System redhat enterprise_linux 3.0 Yes
Operating System redhat enterprise_linux 3.0 Yes
Operating System redhat enterprise_linux 3.0 Yes
Operating System redhat enterprise_linux 4.0 Yes
Operating System redhat enterprise_linux 4.0 Yes
Operating System redhat enterprise_linux 4.0 Yes
Operating System redhat enterprise_linux_desktop 3.0 Yes
Operating System redhat enterprise_linux_desktop 4.0 Yes
Operating System redhat linux_advanced_workstation 2.1 Yes
Operating System redhat linux_advanced_workstation 2.1 Yes
Operating System trustix secure_linux 2.0 Yes
Operating System trustix secure_linux 2.1 Yes
Operating System trustix secure_linux 2.2 Yes
Operating System turbolinux turbolinux_appliance_server 1.0_hosting Yes
Operating System turbolinux turbolinux_appliance_server 1.0_workgroup Yes
Operating System turbolinux turbolinux_desktop 10.0 Yes
Operating System turbolinux turbolinux_home * Yes
Operating System turbolinux turbolinux_server 7.0 Yes
Operating System turbolinux turbolinux_server 8.0 Yes
Operating System turbolinux turbolinux_server 10.0 Yes
Operating System turbolinux turbolinux_workstation 7.0 Yes
Operating System turbolinux turbolinux_workstation 8.0 Yes
Operating System ubuntu ubuntu_linux 4.1 Yes
Operating System ubuntu ubuntu_linux 4.1 Yes
Operating System ubuntu ubuntu_linux 5.04 Yes
Operating System ubuntu ubuntu_linux 5.04 Yes
Operating System ubuntu ubuntu_linux 5.04 Yes

References