GNU patch 2.7.1 allows remote attackers to write to arbitrary files via a symlink attack in a patch file.
References
Configurations
History
No history.
Information
Published : 2015-01-21 18:59
Updated : 2025-04-12 10:46
NVD link : CVE-2015-1196
Mitre link : CVE-2015-1196
CVE.ORG link : CVE-2015-1196
JSON object : View
Products Affected
opensuse
- opensuse
oracle
- solaris
gnu
- patch
CWE
CWE-59
Improper Link Resolution Before File Access ('Link Following')