First published: Mon Apr 21 2008(Updated: )
aptlinex before 0.91 allows local users to overwrite arbitrary files via a symlink attack on the gambas-apt.lock temporary file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Debian Aptlinex | =0.9-1 | |
Debian Aptlinex | =0.8-2 | |
Debian Aptlinex | =0.8-1 | |
Debian Aptlinex | =0.6-1 | |
Debian Aptlinex | =0.7-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-1901 has been classified as a moderate severity vulnerability due to its ability to allow local users to overwrite files.
To fix CVE-2008-1901, upgrade to Aptlinex version 0.91 or later where the symlink vulnerability has been addressed.
CVE-2008-1901 affects users of Aptlinex versions 0.9-1, 0.8-2, 0.8-1, 0.6-1, and 0.7-1 running on Debian.
CVE-2008-1901 is associated with a symlink attack allowing local users to manipulate temporary files.
No, CVE-2008-1901 is a local exploitation vulnerability requiring local user access to exploit.