Vulnerabilities (CVE)

Filtered by vendor Eric Raymond Subscribe
Filtered by product Sng
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-6398 1 Eric Raymond 1 Sng 2024-02-28 6.9 MEDIUM N/A
sng_regress in SNG 1.0.2 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/recompiled$$.png, (2) /tmp/decompiled$$.sng, and (3) /tmp/canonicalized$$.sng temporary files.