LWN.net Logo

virtualbox: symlink vulnerability

Package(s):virtualbox CVE #(s):CVE-2008-5256
Created:January 15, 2009 Updated:February 17, 2009
Description: virtualbox has a symlink vulnerability. From the Madriva alert: A vulnerability have been discovered and corrected in VirtualBox, affecting versions prior to 2.0.6, which allows local users to overwrite arbitrary files via a symlink attack on a /tmp/.vbox-qateam-ipc/lock temporary file.
Alerts:
SuSE SUSE-SR:2009:004 2009-02-17
Mandriva MDVSA-2009:011 2009-01-14

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds