|
|
| |
|
| |
mgetty: insecure use of tmp file
| Package(s): | mgetty |
CVE #(s): | CVE-2008-4936
|
| Created: | December 8, 2008 |
Updated: | December 10, 2008 |
| Description: |
From the Gentoo advisory:
Dmitry E. Oboukhov reported that the "spooldir" directory in
fax/faxspool.in is created in an insecure manner.
A local attacker could exploit this vulnerability to overwrite
arbitrary files with the privileges of the user running the
application.
|
| Alerts: |
|
( Log in to post comments)
|
|
|