CVE-2013-0350 Information

Description

tmp_smtp.c in pktstat 1.8.5 allows local users to overwrite arbitrary files via a symlink attack on /tmp/smtp.log.

Reference

http://osvdb.org/90588 http://seclists.org/oss-sec/2013/q1/417 https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=701211

Share on: