CVE-2008-1569: Low severity debian linux vulnerability
Published Mar 31, 2008
·Updated
policyd-weight 0.1.14 beta-16 and earlier allows local users to modify or delete arbitrary files via a symlink attack on temporary files that are used when creating a socket.
Affected Software
15 affected componentsFixes available
debian/policyd-weight
0.1.15.2-120.1.15.2-12.1
Debian Debian Linux=4.0
Debian Debian Linux=4.0
Debian Debian Linux=4.0
Debian Debian Linux=4.0
Debian Debian Linux=4.0
Debian Debian Linux=4.0
Debian Debian Linux=4.0
Debian Debian Linux=4.0
Debian Debian Linux=4.0
Debian Debian Linux=4.0
Debian Debian Linux=4.0
Debian Debian Linux=4.0
Debian Debian Linux=4.0
policyd-weight policyd-weight<=0.1.14
Remediation
Patch Available
Event History
Mar 31, 2008
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Data Sourced
10:44 PM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2008-1569?
CVE-2008-1569 has a medium severity rating, posing risks of local privilege escalation.
2
How do I fix CVE-2008-1569?
To remediate CVE-2008-1569, upgrade to version 0.1.15.2-12 or later of the policyd-weight package.
3
Which versions of policiyd-weight are affected by CVE-2008-1569?
CVE-2008-1569 affects policyd-weight versions up to and including 0.1.14.
4
Can CVE-2008-1569 be exploited remotely?
CVE-2008-1569 cannot be exploited remotely as it requires local access to the system.
5
What is the nature of the vulnerability in CVE-2008-1569?
CVE-2008-1569 is a symlink attack vulnerability that allows local users to modify or delete arbitrary files.