The shadow database feature (syncshadowdb) in Bugzilla 2.9 through 2.16.10 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
Link | Tags |
---|---|
http://www.debian.org/security/2006/dsa-1208 | vendor advisory |
http://securityreason.com/securityalert/302 | third party advisory |
http://secunia.com/advisories/18218 | third party advisory patch vendor advisory |
http://www.securityfocus.com/bid/16061 | vdb entry patch |
http://www.securityfocus.com/archive/1/420353/100/0/threaded | mailing list |
http://secunia.com/advisories/22826 | third party advisory |
https://bugzilla.mozilla.org/show_bug.cgi?id=305353 | patch |
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=329387 | patch |
https://exchange.xforce.ibmcloud.com/vulnerabilities/23863 | vdb entry |
http://securitytracker.com/id?1015411 | vdb entry patch |