Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2008-1694
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2008-1694

Description:
vcdiff in Emacs 20.7 to 22.1.50, when used with SCCS, allows local users to overwrite arbitrary files via a symlink attack on temporary files.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/41906

UBUNTU
  http://www.ubuntulinux.org/support/documentation/usn/usn-607-1

ST
  1019909

SAID
  Secunia Advisory: SA29905
  Secunia Advisory: SA29926
  Secunia Advisory: SA30109

MANDRIVA
  http://www.mandriva.com/security/advisories?name=MDVSA-2008:096

CONFIRM
  http://bugs.gentoo.org/show_bug.cgi?id=216880

BID
  28857


Return to the previous page.