CVE-2008-4993: Medium severity xen xapi vulnerability
Published Nov 7, 2008
·Updated
qemu-dm.debug in Xen 3.2.1 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/args temporary file.
Affected Software
1 affected component
XEN Xen=3.2.1
Event History
Nov 7, 2008
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-4993?
CVE-2008-4993 is considered to have a moderate severity, primarily affecting local users.
2
How do I fix CVE-2008-4993?
To fix CVE-2008-4993, update to a version of Xen that has resolved this vulnerability.
3
What type of attack is associated with CVE-2008-4993?
CVE-2008-4993 is associated with a symlink attack that allows overwriting arbitrary files.
4
Which version of Xen is affected by CVE-2008-4993?
CVE-2008-4993 specifically affects Xen version 3.2.1.
5
Who is affected by CVE-2008-4993?
CVE-2008-4993 affects local users who can exploit the vulnerable symlink in the /tmp/args temporary file.