CVE-2004-1349 in Oracle and GNU Products
Published on October 4, 2004
gzip before 1.3 in Solaris 8, when called with the -f or -force flags, will change the permissions of files that are hard linked to the target files, which allows local users to view or modify these files.
Products Associated with CVE-2004-1349
stack.watch emails you whenever new vulnerabilities are published in Oracle Solaris or GNU Gzip. Just hit a watch button to start following.
Exploit Probability
EPSS
0.11%
Percentile
29.06%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.