A certain Debian patch for txt2man 1.5.5, as used in txt2man 1.5.5-2, 1.5.5-4, and others, allows local users to overwrite arbitrary files via a symlink attack on /tmp/2222.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2013-09-30 15:55
Updated : 2013-10-10 20:50
NVD link : CVE-2013-1444
Mitre link : CVE-2013-1444
JSON object : View
CWE
CWE-59
Improper Link Resolution Before File Access ('Link Following')
Products Affected
marc_vertes
- txt2man
debian
- txt2man