COMMAND
Tiger
SYSTEMS AFFECTED
munices
PROBLEM
A vulnerability in one of the scripts used by the unix security
tool Tiger has been discovered and a patch issued. Tiger is a
public domain package developed and maintained by Texas A&M
University, used for checking security problems on a Unix system.
Due to lack of checking, a local user can craft a command in such
a way that he may have the command executed with the privileges
of the process running Tiger (usually root). Michel Miqueu and
Philippe Bourgeois of CERT-IST reported the problem.
SOLUTION
Patches for tiger have been issued and are available at
ftp://net.tamu.edu/pub/security/TAMU/