chkstat in SuSE Linux 9.0 through 10.0 allows local users to modify permissions of files by creating a hardlink to a file from a world-writable directory, which can cause the link count to drop to 1 when the file is deleted or replaced, which is then modified by chkstat to use weaker permissions.
| Software | From | Fixed in |
|---|---|---|
| suse / suse_linux | 9.3 | 9.3.x |
| suse / suse_linux | 9.2 | 9.2.x |
| suse / suse_linux | 9.1 | 9.1.x |
| suse / suse_linux | 9.0 | 9.0.x |
| novell / suse_linux | 10.0 | 10.0.x |