CVE-2008-4971 Information

Description

mafft-homologs in mafft 6.240 allows local users to overwrite arbitrary files via a symlink attack on (1) /tmp/_vf????? (2) /tmp/_if????? (3) /tmp/_pf????? (4) /tmp/_af????? (5) /tmp/_rid????? (6) /tmp/_res????? (7) /tmp/_q????? and (8) /tmp/_bf????? temporary files.

Reference

http://bugs.debian.org/496366 http://dev.gentoo.org/~rbu/security/debiantemp/mafft http://uvw.ru/report.lenny.txt http://www.openwall.com/lists/oss-security/2008/10/30/2 http://www.securityfocus.com/bid/30915 https://bugs.gentoo.org/show_bug.cgi?id=235770 https://bugs.gentoo.org/show_bug.cgi?id=235804 https://exchange.xforce.ibmcloud.com/vulnerabilities/44825

Share on: