First published: Tue Oct 30 2007(Updated: )
vobcopy 0.5.14 allows local users to append data to an arbitrary file, or create an arbitrary new file, via a symlink attack on the (1) /tmp/vobcopy.bla or (2) /tmp/vobcopy_0.5.14.log temporary file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Debian Linux | =3.1 | |
Debian Linux | =3.1 | |
Debian Linux | =3.1 | |
Debian Linux | =3.1 | |
Debian Linux | =3.1 | |
Debian Linux | =3.1 | |
Debian Linux | =3.1 | |
Debian Linux | =3.1 | |
Debian Linux | =3.1 | |
Debian Linux | =3.1 | |
Debian Linux | =3.1 | |
Debian Linux | =3.1 | |
Debian Linux | =3.1 | |
Debian Linux | =3.1-r1 | |
Debian Linux | =3.2.4 | |
Debian Linux | =4.0 | |
Debian Linux | =4.0 | |
Debian Linux | =4.0 | |
Debian Linux | =4.0 | |
Debian Linux | =4.0 | |
Debian Linux | =4.0 | |
Debian Linux | =4.0 | |
Debian Linux | =4.0 | |
Debian Linux | =4.0 | |
Debian Linux | =4.0 | |
Debian Linux | =4.0 | |
Debian Linux | =4.0 | |
Debian Linux | =4.0 | |
vobcopy | =0.5.14 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-5718 is considered a moderate severity vulnerability due to its potential for local privilege escalation.
To fix CVE-2007-5718, update vobcopy to version 0.5.14 or apply patches that mitigate the symlink attack.
CVE-2007-5718 affects users of vobcopy version 0.5.14 on Debian Linux systems.
CVE-2007-5718 is a symlink vulnerability that allows local users to manipulate file writing.
CVE-2007-5718 is not exploitable remotely as it requires local access to the system.