First published: Thu Jul 10 2003(Updated: )
The (1) semi MIME library 1.14.5 and earlier, and (2) wemi 1.14.0 and possibly other versions, allows local users to overwrite arbitrary files via a symlink attack on temporary files.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
sed | =1.14.3 | |
Debian Linux | =3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2003-0440 is considered a medium-severity vulnerability due to its potential to allow local users to overwrite arbitrary files.
To fix CVE-2003-0440, it is recommended to upgrade to versions of the semi MIME library and wemi that are not affected by the vulnerability.
CVE-2003-0440 affects semi MIME library versions 1.14.5 and earlier, and wemi version 1.14.0 and possibly other versions.
CVE-2003-0440 involves a symlink attack that enables local users to overwrite arbitrary files.
Yes, CVE-2003-0440 can affect Debian systems, specifically Debian GNU/Linux 3.0.