Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

PatchLink Update Client for Unix Insecure Temporary Files

BugsAlert Home > PatchLink Update Client for Unix Insecure Temporary Files
 
 

Larry W. Cashdollar has reported two security issues in the PatchLink Update client for Unix, which can be exploited by malicious, local users to truncate arbitrary files and to gain escalated privileges.


Be sure to check if your system is missing security updates or have insecure applications installed:
http://secunia.com/software_inspector/

Feature Overview - The Secunia Software Inspector:
* Detects insecure versions of applications installed
* Verifies that all Microsoft patches are applied
* Assists you in updating your system and applications
* Runs through your browser. No installation or download is required.




Original Source: http://secunia.com/advisories/28665/

Learn more about PatchLink Update Client for Unix Insecure Temporary Files
 
Tags: patchlink update client unix insecure temporary files

Related Items

      PostNuke PNphpBB2 Module Multiple File Inclusion Vulnerabilities

      CVE-2008-1509 (XLPortal)

      Those Lazy Hazy Crazy Days of Summer (Movies)

      Spam evolution: January-June 2008

      Debian: New ikiwiki packages fix cross-site request forgery

      Mozilla Firefox "chrome:" URI Handling Directory Traversal Vulnerability

      CVE-2007-6017 (Backup Exec for Windows Server)

 

Pixel