Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2004-0968

EPSS 0.07% · P22
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2004-0968

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The catchsegv script in glibc 2.3.2 and earlier allows local users to overwrite files via a symlink attack on temporary files.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
GNU GLibC以不安全方式创建临时文件漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
glibc是绝大多数Linux操作系统中C库的实现。 GNU GLibC不安全建立临时文件,本地攻击者可以利用这个漏洞破坏系统文件,进行拒绝服务攻击。 问题是由于应用程序在写临时文件时没有正确验证文件是否存在,攻击者利用此漏洞可以当前用户进程权限覆盖任意系统文件,可造成一定的拒绝服务。目前看起来不能利用此漏洞进行权限提升。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2004-0968

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2004-0968

登录查看更多情报信息。

Same Patch Batch · n/a · 2004-10-20 · 18 CVEs total

CVE-2004-0967GhostScript不安全临时文件创建漏洞
CVE-2004-0977PostgreSQL不安全临时文件创建漏洞
CVE-2004-0976Perl以安全方式创建临时文件漏洞
CVE-2004-0975OpenSSL DER_CHOP不安全临时文件创建漏洞
CVE-2004-0974NetaTalk未指定的不安全临时文件创建漏洞
CVE-2004-0972Trustix LVM实用程序未指定的不安全临时文件创建漏洞
CVE-2004-0971Trustix Secure Linux 安全漏洞
CVE-2004-0970GNU GZip未指定的不安全临时文件创建漏洞
CVE-2004-0969GNU Troff (Groff) Groffer脚本不安全临时文件创建漏洞
CVE-2001-1413Ncompress长文件名缓冲区溢出漏洞
CVE-2004-0966GNU GetText未指定的不安全临时文件创建漏洞
CVE-2004-0964Zinf形态异常的播放列表文件远程缓冲区溢出漏洞
CVE-2004-0963Microsoft Word文件解析溢出(MS05-023)
CVE-2004-0961FreeRADIUS Access-Request packets远程拒绝服务漏洞
CVE-2004-0960FreeRADIUS 畸形VSA属性拒绝服务攻击
CVE-2004-0834Speedtouch USB驱动程序本地格式串漏洞
CVE-2004-0805mpg123远程缓冲区溢出漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2004-0968

No comments yet


Leave a comment