Red Hat Customer Portal

Skip to main content

CVE-2005-0953

Impact:
Low
Public Date:
2005-03-30

The MITRE CVE dictionary describes this issue as:

Race condition in bzip2 1.0.2 and earlier allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by bzip2 after the decompression is complete.

Find out more about CVE-2005-0953 from the MITRE CVE dictionary dictionary and NIST NVD.

Statement

Red Hat Enterprise Linux 5 is not vulnerable to this issue as it contains a backported patch.

Red Hat Security Errata

Platform Errata Release Date
Red Hat Enterprise Linux 4 (bzip2) RHSA-2005:474 2005-06-16
Red Hat Enterprise Linux 2.1 (bzip2) RHSA-2005:474 2005-06-16
Red Hat Enterprise Linux 3 (bzip2) RHSA-2005:474 2005-06-16