Required CVE Record Information
Description
ibackup 2.27 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
References 7 Total
- openwall.com: [oss-security] 20081030 CVE requests: tempfile issues for aview, mgetty, openoffice, crossfire mailing-list
- https://bugs.gentoo.org/show_bug.cgi?id=235770
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=496464
- http://dev.gentoo.org/~rbu/security/debiantemp/ibackup
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=496432
- exchange.xforce.ibmcloud.com: ibackup-unspecified-symlink(45852) vdb-entry
- lists.debian.org: [debian-devel] 20080811 Possible mass bug filing: The possibility of attack with the help of symlinks in some Debian packages mailing-list
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 7 Total
- openwall.com: [oss-security] 20081030 CVE requests: tempfile issues for aview, mgetty, openoffice, crossfire mailing-listx_transferred
- https://bugs.gentoo.org/show_bug.cgi?id=235770 x_transferred
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=496464 x_transferred
- http://dev.gentoo.org/~rbu/security/debiantemp/ibackup x_transferred
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=496432 x_transferred
- exchange.xforce.ibmcloud.com: ibackup-unspecified-symlink(45852) vdb-entryx_transferred
- lists.debian.org: [debian-devel] 20080811 Possible mass bug filing: The possibility of attack with the help of symlinks in some Debian packages mailing-listx_transferred