CVE-2008-0883

acroread in Adobe Acrobat Reader 8.1.2 allows local users to overwrite arbitrary files via a symlink attack on temporary files related to SSL certificate handling.
References
Link Resource
http://lists.opensuse.org/opensuse-security-announce/2008-03/msg00001.html
http://secunia.com/advisories/29229 Vendor Advisory
http://secunia.com/advisories/29242
http://secunia.com/advisories/29425
http://secunia.com/advisories/31136
http://secunia.com/advisories/31352
http://sunsolve.sun.com/search/document.do?assetkey=1-26-240106-1
http://support.novell.com/techcenter/psdb/d8c48c63359fc807624182696d3d149c.html Patch
http://www.adobe.com/support/security/advisories/apsa08-02.html
http://www.gentoo.org/security/en/glsa/glsa-200803-26.xml
http://www.redhat.com/support/errata/RHSA-2008-0641.html
http://www.securityfocus.com/bid/28091
http://www.securitytracker.com/id?1019539
http://www.vupen.com/english/advisories/2008/0765/references
http://www.vupen.com/english/advisories/2008/2289
https://exchange.xforce.ibmcloud.com/vulnerabilities/40987
http://lists.opensuse.org/opensuse-security-announce/2008-03/msg00001.html
http://secunia.com/advisories/29229 Vendor Advisory
http://secunia.com/advisories/29242
http://secunia.com/advisories/29425
http://secunia.com/advisories/31136
http://secunia.com/advisories/31352
http://sunsolve.sun.com/search/document.do?assetkey=1-26-240106-1
http://support.novell.com/techcenter/psdb/d8c48c63359fc807624182696d3d149c.html Patch
http://www.adobe.com/support/security/advisories/apsa08-02.html
http://www.gentoo.org/security/en/glsa/glsa-200803-26.xml
http://www.redhat.com/support/errata/RHSA-2008-0641.html
http://www.securityfocus.com/bid/28091
http://www.securitytracker.com/id?1019539
http://www.vupen.com/english/advisories/2008/0765/references
http://www.vupen.com/english/advisories/2008/2289
https://exchange.xforce.ibmcloud.com/vulnerabilities/40987
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:suse:open_suse:10.1:*:*:*:*:*:*:*
cpe:2.3:o:suse:open_suse:10.2:*:*:*:*:*:*:*
cpe:2.3:o:suse:open_suse:10.3:*:*:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:10:*:enterprise_desktop:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:10:*:enterprise_server:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:10:sp1:enterprise_desktop:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:10.0:*:ppc:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:10.0:*:x86:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:10.0:*:x86_64:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:10.1:*:ppc:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:10.1:*:x86:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:10.1:*:x86_64:*:*:*:*:*
cpe:2.3:o:suse:suse_linux_desktop:10:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat_reader:8.1.2:*:*:*:*:*:*:*

History

21 Nov 2024, 00:43

Type Values Removed Values Added
References () http://lists.opensuse.org/opensuse-security-announce/2008-03/msg00001.html - () http://lists.opensuse.org/opensuse-security-announce/2008-03/msg00001.html -
References () http://secunia.com/advisories/29229 - Vendor Advisory () http://secunia.com/advisories/29229 - Vendor Advisory
References () http://secunia.com/advisories/29242 - () http://secunia.com/advisories/29242 -
References () http://secunia.com/advisories/29425 - () http://secunia.com/advisories/29425 -
References () http://secunia.com/advisories/31136 - () http://secunia.com/advisories/31136 -
References () http://secunia.com/advisories/31352 - () http://secunia.com/advisories/31352 -
References () http://sunsolve.sun.com/search/document.do?assetkey=1-26-240106-1 - () http://sunsolve.sun.com/search/document.do?assetkey=1-26-240106-1 -
References () http://support.novell.com/techcenter/psdb/d8c48c63359fc807624182696d3d149c.html - Patch () http://support.novell.com/techcenter/psdb/d8c48c63359fc807624182696d3d149c.html - Patch
References () http://www.adobe.com/support/security/advisories/apsa08-02.html - () http://www.adobe.com/support/security/advisories/apsa08-02.html -
References () http://www.gentoo.org/security/en/glsa/glsa-200803-26.xml - () http://www.gentoo.org/security/en/glsa/glsa-200803-26.xml -
References () http://www.redhat.com/support/errata/RHSA-2008-0641.html - () http://www.redhat.com/support/errata/RHSA-2008-0641.html -
References () http://www.securityfocus.com/bid/28091 - () http://www.securityfocus.com/bid/28091 -
References () http://www.securitytracker.com/id?1019539 - () http://www.securitytracker.com/id?1019539 -
References () http://www.vupen.com/english/advisories/2008/0765/references - () http://www.vupen.com/english/advisories/2008/0765/references -
References () http://www.vupen.com/english/advisories/2008/2289 - () http://www.vupen.com/english/advisories/2008/2289 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/40987 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/40987 -

Information

Published : 2008-03-06 00:44

Updated : 2024-11-21 00:43


NVD link : CVE-2008-0883

Mitre link : CVE-2008-0883

CVE.ORG link : CVE-2008-0883


JSON object : View

Products Affected

suse

  • suse_linux_desktop
  • open_suse
  • suse_linux

adobe

  • acrobat_reader
CWE
CWE-59

Improper Link Resolution Before File Access ('Link Following')