4 results (0.004 seconds)

CVSS: 7.5EPSS: 0%CPEs: 20EXPL: 3

23 May 2011 — The make include files in NetBSD before 1.6.2, as used in pmake 1.111 and other products, allow local users to overwrite arbitrary files via a symlink attack on a /tmp/_depend##### temporary file, related to (1) bsd.lib.mk and (2) bsd.prog.mk. El "make" incluye ficheros en NetBSD anterior a v1.6.2 usados en pmake v1.111 y otros productos, permite a usuarios locales sobreescribir ficheros de su elección a través de un ataque de enlace simbólico sobre un archivo temporal /tmp/_depend#####, relacionado con (1)... • http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=626673 • CWE-59: Improper Link Resolution Before File Access ('Link Following') •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 1

21 Nov 2001 — Format string vulnerability in Berkeley parallel make (pmake) 2.1.33 and earlier allows a local user to gain root privileges via format specifiers in the check argument of a shell definition. • https://www.exploit-db.com/exploits/21158 •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 1

21 Nov 2001 — Buffer overflow in Berkeley parallel make (pmake) 2.1.33 and earlier allows a local user to gain root privileges via a long check argument of a shell definition. • https://www.exploit-db.com/exploits/21159 •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

24 May 2001 — pmake before 2.1.35 in Turbolinux 6.05 and earlier is installed with setuid root privileges, which could allow local users to gain privileges by exploiting vulnerabilities in pmake or programs that are used by pmake. • http://www.iss.net/security_center/static/9988.php •