CVE-2005-3069: Low severity hylafax hylafax vulnerability
Published Sep 27, 2005
·Updated
xferfaxstats in HylaFax 4.2.1 and earlier allows local users to overwrite arbitrary files via a symlink attack on the xferfax$$ temporary file.
Affected Software
1 affected component
Hylafax HylaFAX=4.2.1
Event History
Sep 27, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-3069?
CVE-2005-3069 is considered a medium severity vulnerability due to its potential for local users to exploit file overwrites.
2
How do I fix CVE-2005-3069?
To fix CVE-2005-3069, users should upgrade to a later version of HylaFax that is not affected by this vulnerability.
3
Who is affected by CVE-2005-3069?
CVE-2005-3069 affects local users on systems running HylaFax versions up to and including 4.2.1.
4
What type of attack is involved in CVE-2005-3069?
CVE-2005-3069 involves a symlink attack which allows file overwriting through manipulation of temporary files.
5
Is CVE-2005-3069 a remote vulnerability?
No, CVE-2005-3069 is a local vulnerability that requires local user access to exploit.