CVE-2007-6131 Information

Description

buttonpressed.sh in scanbuttond 0.2.3 allows local users to overwrite arbitrary files via a symlink attack on the (1) scan.pnm and (2) scan.jpg temporary files.

Reference

http://osvdb.org/42422 http://secunia.com/advisories/27847 http://securitytracker.com/id?1019007 http://www.securityfocus.com/bid/26617 http://www.vupen.com/english/advisories/2007/4024 https://bugzilla.redhat.com/show_bug.cgi?id=383131

Share on: