CAPEC 45 Buffer Overflow via Symbolic Links

Draft Detailed High Risk
Severity High

Description

This type of attack leverages the use of symbolic links to cause buffer overflows. An adversary can try to create or manipulate a symbolic link file such that its contents result in out of bounds data. When the target software processes the symbolic link file, it could potentially overflow internal buffers with insufficient bounds checking.

Attack Execution Flow

4

Mitigations

8

Consequences

Indicators

2

Relationships