CVE-2008-4407: Low severity debian xsabre vulnerability
Published Oct 3, 2008
·Updated
XRunSabre in sabre (aka xsabre) 0.2.4b relies on the ability to create /tmp/sabre.log, which allows local users to cause a denial of service (application unavailability) by creating a /tmp/sabre.log file that cannot be overwritten.
Affected Software
1 affected component
Debian xsabre=0.2.4b
Event History
Oct 3, 2008
CVE Published
via MITRE·05:18 PM
Data Sourced
via MITRE·05:18 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-4407?
CVE-2008-4407 has been classified as a vulnerability that could lead to denial of service.
2
How do I fix CVE-2008-4407?
To fix CVE-2008-4407, ensure that the /tmp/sabre.log file is not created with restrictive permissions that block overwriting.
3
Who is affected by CVE-2008-4407?
CVE-2008-4407 affects users of XRunSabre version 0.2.4b on Debian systems.
4
What type of vulnerability is CVE-2008-4407?
CVE-2008-4407 is a local denial of service vulnerability.
5
Can CVE-2008-4407 be exploited remotely?
No, CVE-2008-4407 requires local access to exploit the vulnerability.