Debian Security Advisory
dump -- problem restoring symlinks
- Date Reported:
- 02 Dec 1999
- Affected Packages:
- Security database references:
- In Mitre's CVE dictionary: CVE-2000-0366.
- More information:
- The version of dump that was distributed with Debian
GNU/Linux 2.1 suffers from a problem with restoring symbolic links.
This has been fixed in version 0.4b9-0slink1. We recommend you upgrade your dump package immediately.
This version "Uses lchown instead of chown, fixing a possible security problem when restoring symlinks (a malicious user could use this to deliberately corrupt the ownership of important system files)".
- Fixed in: