CNCVE编号:CNCVE-20010736 CVE编号:CAN-2001-0736 安全级别:中 漏洞中文描述: pine 4.33早期版本以及带有pine的pico编辑器中的漏洞允许本地用户通过symlink攻击来覆盖任意文件。 漏洞英文描述: Vulnerability in (1) pine before 4.33 and (2) the pico editor, included with pine, allows local users local users to overwrite arbitrary files via a symlink attack. 漏洞参考: Reference: REDHAT:RHSA-2001:042-02 Reference: URL:http://www.redhat.com/support/errata/RHSA-2001-042.html Reference: MANDRAKE:MDKSA-2001:047 Reference: URL:http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-047.php3?dis=8.0 Reference: BUGTRAQ 系统类型:其他 漏洞类型:权限有效性检查错误