Vulnerabilities (CVE)

Filtered by vendor Xastir Subscribe
Filtered by product Xastir
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-4987 1 Xastir 1 Xastir 2024-02-28 6.9 MEDIUM N/A
xastir 1.9.2 allows local users to overwrite arbitrary files via a symlink attack on the (a) /tmp/ldconfig.tmp, (b) /tmp/ldconf.tmp, and (c) /tmp/ld.so.conf temporary files, related to the (1) get-maptools.sh and (2) get_shapelib.sh scripts.