CVE-2008-2266 (UUDeview) [Sitemap] - HeapOverflow Computer Security Community & Forums : Heap Overflow.com

PDA

View Full Version : CVE-2008-2266 (UUDeview)


Heap
16-05-08, 20:50
uulib/uunconc.c in UUDeview 0.5.20 allows local users to overwrite arbitrary files via a symlink attack on a temporary filename generated by the tempnam function. NOTE: this may be a CVE-2004-2265 regression.

More... (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-2266)