Joe text editor follows symbolic links when creating a rescue copy called DEADJOE during an abnormal exit, which allows local users to overwrite the files of other users whose joe session crashes.
References
Configurations
History
No history.
Information
Published : 2001-01-09 05:00
Updated : 2025-04-03 01:03
NVD link : CVE-2000-1178
Mitre link : CVE-2000-1178
CVE.ORG link : CVE-2000-1178
JSON object : View
Products Affected
joseph_allen
- joe
CWE
CWE-59
Improper Link Resolution Before File Access ('Link Following')