|
|
| |
|
| |
muttprint: insecure temporary files
| Package(s): | muttprint |
CVE #(s): | CVE-2008-5368
|
| Created: | March 24, 2009 |
Updated: | March 25, 2009 |
| Description: |
From the Gentoo advisory: Dmitry E. Oboukhov reported an insecure usage of the temporary file "/tmp/muttprint.log" in the muttprint script.
A local attacker could perform symlink attacks to overwrite arbitrary
files with the privileges of the user running the application.
|
| Alerts: |
|
( Log in to post comments)
|
|
|