CVE-1999-1332
EPSS 0.15%gzip - insecure temporary files
Published: 12/31/1999Modified: 4/28/2026
Also known as:DEBIAN-CVE-1999-1332
Description
gzexe in the gzip package on Red Hat Linux 5.0 and earlier allows local users to overwrite files of other users via a symlink attack on a temporary file.
Affected packages (2)
- Debian/gzipfrom 0, < 1.3.5-6
- Debian/gzipfrom 0, < 1.3.2-3woody1