Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

Debian freebsd-sendpr 'sendbug' Insecure Temporary File Creation Vulnerability

Debian freebsd-sendpr creates temporary files in an insecure manner.

An attacker with local access could perform symbolic-link attacks, overwriting arbitrary files in the context of the affected application.

Successfully mounting a symlink attack may allow the attacker to delete or corrupt sensitive files, which may result in a denial of service. Other attacks may also be possible.

This issue affects freebsd-sendpr 3.113+5.3-10; other versions may also be affected.







 

Privacy Statement
Copyright 2008, SecurityFocus