Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2008-5007

Опубликовано: 10 нояб. 2008
Источник: debian
EPSS Низкий

Описание

create_lazarus_export_tgz.sh in lazarus 0.9.24 allows local users to overwrite or delete arbitrary files via a symlink attack on a (1) /tmp/lazarus.tgz temporary file or a (2) /tmp/lazarus temporary directory.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
lazarusfixed0.9.24-0-11package

Примечания

  • vulnerable script only called when updating the source

  • thus neither actively used nor invoked automatically

EPSS

Процентиль: 3%
0.00023
Низкий

Связанные уязвимости

ubuntu
около 17 лет назад

create_lazarus_export_tgz.sh in lazarus 0.9.24 allows local users to overwrite or delete arbitrary files via a symlink attack on a (1) /tmp/lazarus.tgz temporary file or a (2) /tmp/lazarus temporary directory.

redhat
около 17 лет назад

create_lazarus_export_tgz.sh in lazarus 0.9.24 allows local users to overwrite or delete arbitrary files via a symlink attack on a (1) /tmp/lazarus.tgz temporary file or a (2) /tmp/lazarus temporary directory.

nvd
около 17 лет назад

create_lazarus_export_tgz.sh in lazarus 0.9.24 allows local users to overwrite or delete arbitrary files via a symlink attack on a (1) /tmp/lazarus.tgz temporary file or a (2) /tmp/lazarus temporary directory.

github
больше 3 лет назад

create_lazarus_export_tgz.sh in lazarus 0.9.24 allows local users to overwrite or delete arbitrary files via a symlink attack on a (1) /tmp/lazarus.tgz temporary file or a (2) /tmp/lazarus temporary directory.

EPSS

Процентиль: 3%
0.00023
Низкий
Уязвимость CVE-2008-5007