Required CVE Record Information
Description
javareconf in R 2.7.2 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
References 13 Total
- securityfocus.com: 30878 vdb-entry
- exchange.xforce.ibmcloud.com: r-javareconf-symlink(44736) vdb-entry
- http://dev.gentoo.org/~rbu/security/debiantemp/r-base-core
- openwall.com: [oss-security] 20081030 CVE requests: tempfile issues for aview, mgetty, openoffice, crossfire mailing-list
- http://dev.gentoo.org/~rbu/security/debiantemp/r-base-core-ra
- https://bugs.gentoo.org/show_bug.cgi?id=235770
- http://bugs.debian.org/496418
- secunia.com: 31647 third-party-advisory
- security.gentoo.org: GLSA-200809-13 vendor-advisory
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=496363
- https://bugs.gentoo.org/show_bug.cgi?id=235822
- mandriva.com: MDVSA-2008:198 vendor-advisory
- secunia.com: 31996 third-party-advisory
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 13 Total
- securityfocus.com: 30878 vdb-entryx_transferred
- exchange.xforce.ibmcloud.com: r-javareconf-symlink(44736) vdb-entryx_transferred
- http://dev.gentoo.org/~rbu/security/debiantemp/r-base-core x_transferred
- openwall.com: [oss-security] 20081030 CVE requests: tempfile issues for aview, mgetty, openoffice, crossfire mailing-listx_transferred
- http://dev.gentoo.org/~rbu/security/debiantemp/r-base-core-ra x_transferred
- https://bugs.gentoo.org/show_bug.cgi?id=235770 x_transferred
- http://bugs.debian.org/496418 x_transferred
- secunia.com: 31647 third-party-advisoryx_transferred
- security.gentoo.org: GLSA-200809-13 vendor-advisoryx_transferred
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=496363 x_transferred
- https://bugs.gentoo.org/show_bug.cgi?id=235822 x_transferred
- mandriva.com: MDVSA-2008:198 vendor-advisoryx_transferred
- secunia.com: 31996 third-party-advisoryx_transferred