CVE-2008-4406: High severity debian xsabre vulnerability
Published Oct 3, 2008
·Updated
A certain Debian patch to the run scripts for sabre (aka xsabre) 0.2.4b allows local users to delete or overwrite arbitrary files via a symlink attack on unspecified .tmp files.
Affected Software
1 affected component
Debian xsabre=0.2.4b
Event History
Oct 3, 2008
CVE Published
via MITRE·05:18 PM
Data Sourced
via MITRE·05:18 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-4406?
CVE-2008-4406 has a moderate severity as it allows local users to exploit file manipulation vulnerabilities.
2
How do I fix CVE-2008-4406?
To fix CVE-2008-4406, you should apply the latest security patches provided by Debian for xsabre.
3
What type of attack does CVE-2008-4406 involve?
CVE-2008-4406 involves a symlink attack that allows for deletion or modification of arbitrary files.
4
Which version of software is affected by CVE-2008-4406?
CVE-2008-4406 affects version 0.2.4b of the xsabre software package.
5
Who is impacted by CVE-2008-4406?
Local users on systems running the affected version of xsabre are impacted by CVE-2008-4406.