CVE-2008-4984
06.11.2008, 15:55
scratchbox2 1.99.0.24 allows local users to overwrite arbitrary files via a symlink attack on (a) /tmp/dpkg.#####.tmp, (b) /tmp/missing_deps.#####, and (c) /tmp/sb2-pkg-chk.$tstamp.##### temporary files, related to the (1) dpkg-checkbuilddeps and (2) sb2-check-pkg-mappings scripts.
Vendor | Product | Version |
---|---|---|
freedesktop | scratchbox2 | 1.99.0.24 |
𝑥
= Vulnerable software versions

Ubuntu Releases
References