CVE-2008-1901: High severity debian aptlinex vulnerability
Published Apr 21, 2008
·Updated
aptlinex before 0.91 allows local users to overwrite arbitrary files via a symlink attack on the gambas-apt.lock temporary file.
Affected Software
5 affected components
Debian Aptlinex=0.9-1
Debian Aptlinex=0.8-2
Debian Aptlinex=0.8-1
Debian Aptlinex=0.6-1
Debian Aptlinex=0.7-1
Event History
Apr 21, 2008
CVE Published
via MITRE·10:10 PM
Data Sourced
via MITRE·10:10 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-1901?
CVE-2008-1901 has been classified as a moderate severity vulnerability due to its ability to allow local users to overwrite files.
2
How do I fix CVE-2008-1901?
To fix CVE-2008-1901, upgrade to Aptlinex version 0.91 or later where the symlink vulnerability has been addressed.
3
Who is affected by CVE-2008-1901?
CVE-2008-1901 affects users of Aptlinex versions 0.9-1, 0.8-2, 0.8-1, 0.6-1, and 0.7-1 running on Debian.
4
What kind of attack is CVE-2008-1901 associated with?
CVE-2008-1901 is associated with a symlink attack allowing local users to manipulate temporary files.
5
Is CVE-2008-1901 a remote exploitation vulnerability?
No, CVE-2008-1901 is a local exploitation vulnerability requiring local user access to exploit.