CVE-2011-2684
23.10.2017, 18:29
foo2zjs before 20110722dfsg-3ubuntu1 as packaged in Ubuntu, 20110722dfsg-1 as packaged in Debian unstable, and 20090908dfsg-5.1+squeeze0 as packaged in Debian squeeze create temporary files insecurely, which allows local users to write over arbitrary files via a symlink attack on /tmp/foo2zjs.
| Vendor | Product | Version |
|---|---|---|
| rkkda | foo2zjs | 20090908dfsg-5.1\+squeeze0:dfsg |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References