CVE-2008-4984
06.11.2008, 15:55
scratchbox2 1.99.0.24 allows local users to overwrite arbitrary files via a symlink attack on (a) /tmp/dpkg.#####.tmp, (b) /tmp/missing_deps.#####, and (c) /tmp/sb2-pkg-chk.$tstamp.##### temporary files, related to the (1) dpkg-checkbuilddeps and (2) sb2-check-pkg-mappings scripts.
| Vendor | Product | Version |
|---|---|---|
| freedesktop | scratchbox2 | 1.99.0.24 |
𝑥
= Vulnerable software versions
Ubuntu Releases
References