CVE-2008-3216: Medium severity debian vulnerability
Published Jul 18, 2008
·Updated
The save function in br/prefmanager.d in projectl 1.001 creates a projectL.prf file in the current working directory, which allows local users to overwrite arbitrary files via a symlink attack.
Affected Software
1 affected component
Debian Projectl=1.001
Event History
Jul 18, 2008
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-3216?
CVE-2008-3216 has been assigned a low severity level due to its local exploitation requirement.
2
How do I fix CVE-2008-3216?
To fix CVE-2008-3216, ensure that the save function does not create the projectL.prf file in the current working directory by applying proper file permissions and checks.
3
What types of attacks are possible with CVE-2008-3216?
CVE-2008-3216 allows local users to perform symlink attacks to overwrite arbitrary files.
4
Which software is affected by CVE-2008-3216?
CVE-2008-3216 affects the projectl version 1.001 in Debian systems.
5
Can CVE-2008-3216 be exploited remotely?
CVE-2008-3216 cannot be exploited remotely as it requires local access to the vulnerable system.