CVE-2001-1145

fts routines in FreeBSD 4.3 and earlier, NetBSD before 1.5.2, and OpenBSD 2.9 and earlier can be forced to change (chdir) into a different directory than intended when the directory above the current directory is moved, which could cause scripts to perform dangerous actions on the wrong directories.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:freebsd:freebsd:4.3:*:*:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.5:*:*:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.5.1:*:*:*:*:*:*:*
cpe:2.3:o:openbsd:openbsd:*:*:*:*:*:*:*:*

History

20 Nov 2024, 23:36

Type Values Removed Values Added
References () ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:40.fts.v1.1.asc - () ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:40.fts.v1.1.asc -
References () http://archives.neohapsis.com/archives/netbsd/2001-q3/0204.html - Patch, Vendor Advisory () http://archives.neohapsis.com/archives/netbsd/2001-q3/0204.html - Patch, Vendor Advisory
References () http://www.iss.net/security_center/static/8715.php - () http://www.iss.net/security_center/static/8715.php -
References () http://www.openbsd.org/errata28.html - Patch () http://www.openbsd.org/errata28.html - Patch
References () http://www.osvdb.org/5466 - () http://www.osvdb.org/5466 -
References () http://www.securityfocus.com/bid/3205 - () http://www.securityfocus.com/bid/3205 -

Information

Published : 2001-08-17 04:00

Updated : 2024-11-20 23:36


NVD link : CVE-2001-1145

Mitre link : CVE-2001-1145

CVE.ORG link : CVE-2001-1145


JSON object : View

Products Affected

openbsd

  • openbsd

netbsd

  • netbsd

freebsd

  • freebsd