CVE-2008-5366
08.12.2008, 23:30
The postinst script in ppp 2.4.4rel on Debian GNU/Linux allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/probe-finished or (2) /tmp/ppp-errors temporary file.
| Vendor | Product | Version |
|---|---|---|
| marco_d\'itri | ppp | 2.4.4 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases