CVE-2008-5135 Information

Description

LICENSE README.md cvefilelist cvelist nvdcve nvdpages.sh scripts test-CVE-2017-1882.markdown test-CVE-2017-18822.markdown tmpvendorlinks DISPUTED LICENSE README.md cvefilelist cvelist nvdcve nvdpages.sh scripts test-CVE-2017-1882.markdown test-CVE-2017-18822.markdown tmpvendorlinks os-prober in os-prober 1.17 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/mounted-map or (2) /tmp/raided-map temporary file. NOTE: the vendor disputes this issue stating \the insecure code path should only ever run inside a d-i environment which has no non-root users.\

Reference

http://lists.debian.org/debian-devel/2008/08/msg00285.html http://lists.debian.org/debian-devel/2008/08/msg00296.html

Share on: