CVE-2010-2056

GNU gv before 3.7.0 allows local users to overwrite arbitrary files via a symlink attack on a temporary file.
Link Following
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
3.3 UNKNOWN
LOCAL
MEDIUM
AV:L/AC:M/Au:N/C:N/I:P/A:P
redhatCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 12%
VendorProductVersion
gnugv
𝑥
≤ 3.6.9
gnugv
3.5.8
gnugv
3.6.0
gnugv
3.6.1
gnugv
3.6.2
gnugv
3.6.3
gnugv
3.6.4
gnugv
3.6.5
gnugv
3.6.6
gnugv
3.6.7
gnugv
3.6.8
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
gv
sid
1:3.7.4-2
fixed
trixie
1:3.7.4-2
fixed
bookworm
1:3.7.4-2
fixed
bullseye
1:3.7.4-2
fixed
lenny
no-dsa
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
gv
saucy
not-affected
raring
not-affected
quantal
not-affected
precise
not-affected
oneiric
not-affected
natty
not-affected
maverick
not-affected
lucid
ignored
karmic
ignored
jaunty
ignored
hardy
ignored
dapper
ignored