LWN.net Logo

catdoc: insecure temp file

Package(s):catdoc CVE #(s):CAN-2003-0193
Created:October 28, 2004 Updated:November 2, 2004
Description: The xlsview utility in catdoc has a vulnerability that may allow local users to overwrite arbitrary files using a symlink attack on predictable temporary file names.
Alerts:
Debian DSA-575-1 2004-10-28

(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds
Powered by Rackspace Managed Hosting.