VYPR
Unrated severityNVD Advisory· Published May 16, 2002· Updated Apr 16, 2026

CVE-2002-0211

CVE-2002-0211

Description

Race condition in the installation script for Tarantella Enterprise 3 3.01 through 3.20 creates a world-writeable temporary "gunzip" program before executing it, which could allow local users to execute arbitrary commands by modifying the program before it is executed.

Affected products

5
  • cpe:2.3:a:tarantella:tarantella_enterprise:3.3.0:*:*:*:*:*:*:*+ 4 more
    • cpe:2.3:a:tarantella:tarantella_enterprise:3.3.0:*:*:*:*:*:*:*
    • cpe:2.3:a:tarantella:tarantella_enterprise:3.3.0.1:*:*:*:*:*:*:*
    • cpe:2.3:a:tarantella:tarantella_enterprise:3.3.10:*:*:*:*:*:*:*
    • cpe:2.3:a:tarantella:tarantella_enterprise:3.3.11:*:*:*:*:*:*:*
    • cpe:2.3:a:tarantella:tarantella_enterprise:3.3.20:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.