Race condition in bzip2 before 1.0.2 in FreeBSD 4.5 and earlier, OpenLinux 3.1 and 3.1.1, and possibly other operating systems, decompresses files with world-readable permissions before setting the permissions to what is specified in the bzip2 archive, which could allow local users to read the files as they are being decompressed.
Metrics
Affected Vendors & Products
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published: 2003-04-02T05:00:00.000Z
Updated: 2024-08-08T03:03:47.936Z
Reserved: 2002-07-25T00:00:00.000Z
Link: CVE-2002-0760
No data.
Status : Deferred
Published: 2002-08-12T04:00:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2002-0760
No data.