The debstd script in debmake 3.6.x before 3.6.10 and 3.7.x before 3.7.7 allows local users to overwrite arbitrary files via a symlink attack on temporary directories.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/12078 | vdb entry third party advisory patch |
http://www.derkeiler.com/Mailing-Lists/Full-Disclosure/2004-12/0645.html | mailing list broken link |
http://www.debian.org/security/2004/dsa-615 | patch vendor advisory |
http://secunia.com/advisories/13633/ | third party advisory permissions required |
https://exchange.xforce.ibmcloud.com/vulnerabilities/18646 | vdb entry third party advisory |