The (1) eqn2graph and (2) pic2graph scripts in groff 1.18.1 allow local users to overwrite arbitrary files via a symlink attack on temporary files.
References
Configurations
History
20 Nov 2024, 23:50
Type | Values Removed | Values Added |
---|---|---|
References | () http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=286371 - | |
References | () http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=286372 - | |
References | () http://marc.info/?l=bugtraq&m=110358225615424&w=2 - | |
References | () http://wwwnew.mandriva.com/security/advisories?name=MDKSA-2006:038 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/18660 - |
Information
Published : 2004-12-31 05:00
Updated : 2024-11-20 23:50
NVD link : CVE-2004-1296
Mitre link : CVE-2004-1296
CVE.ORG link : CVE-2004-1296
JSON object : View
Products Affected
gnu
- groff
CWE