CVE-2008-4975: Medium severity debian newsgate vulnerability
Published Nov 6, 2008
·Updated
mkmailpost in newsgate 1.6 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/mmp##### temporary file.
Affected Software
1 affected component
Debian Newsgate=1.6
Event History
Nov 6, 2008
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-4975?
CVE-2008-4975 is considered a high severity vulnerability due to its potential to allow arbitrary file overwrites.
2
How do I fix CVE-2008-4975?
To fix CVE-2008-4975, you should upgrade to a version of the software that is not vulnerable, if available.
3
What type of attack is associated with CVE-2008-4975?
CVE-2008-4975 is associated with a symlink attack that exploits temporary files.
4
Which software is affected by CVE-2008-4975?
CVE-2008-4975 specifically affects newsgate version 1.6 on Debian systems.
5
Can local users exploit CVE-2008-4975?
Yes, local users can exploit CVE-2008-4975 to overwrite arbitrary files on the system.