CVE-2008-5138 Information

Description

passwdehd in libpam-mount 0.43 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/passwdehd. temporary file.

Reference

http://lists.debian.org/debian-devel/2008/08/msg00285.html http://lists.opensuse.org/opensuse-security-announce/2009-03/msg00000.html http://secunia.com/advisories/32780 https://exchange.xforce.ibmcloud.com/vulnerabilities/46724

Share on: