CVE Database
/

CVE-2011-3602

Back to search

CVE-2011-3602

Published: Apr 27, 2014

Modified: Aug 6, 2024

PUBLISHED

Description

Directory traversal vulnerability in device-linux.c in the router advertisement daemon (radvd) before 1.8.2 allows local users to overwrite arbitrary files, and remote attackers to overwrite certain files, via a .. (dot dot) in an interface name. NOTE: this can be leveraged with a symlink to overwrite arbitrary files.

VendorProductVersions

n/a

n/a

affected
n/a

References

DSA-2323
vendor-advisory
x_refsource_DEBIAN
USN-1257-1
vendor-advisory
x_refsource_UBUNTU

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now