CVE-2003-0440: Medium severity semi semi vulnerability
Published Jul 10, 2003
·Updated
The (1) semi MIME library 1.14.5 and earlier, and (2) wemi 1.14.0 and possibly other versions, allows local users to overwrite arbitrary files via a symlink attack on temporary files.
Affected Software
2 affected components
semi semi=1.14.3
Debian Debian Linux=3.0
Remediation
Patch Available
Patch Available
Event History
Jul 10, 2003
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Aug 18, 2003
Data Sourced
via NVD·04:00 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2003-0440?
CVE-2003-0440 is considered a medium-severity vulnerability due to its potential to allow local users to overwrite arbitrary files.
2
How do I fix CVE-2003-0440?
To fix CVE-2003-0440, it is recommended to upgrade to versions of the semi MIME library and wemi that are not affected by the vulnerability.
3
Which software versions are affected by CVE-2003-0440?
CVE-2003-0440 affects semi MIME library versions 1.14.5 and earlier, and wemi version 1.14.0 and possibly other versions.
4
What kind of attack does CVE-2003-0440 involve?
CVE-2003-0440 involves a symlink attack that enables local users to overwrite arbitrary files.
5
Can CVE-2003-0440 affect my Debian system?
Yes, CVE-2003-0440 can affect Debian systems, specifically Debian GNU/Linux 3.0.