First published: Mon Dec 08 2008(Updated: )
noip2 in noip2 2.1.7 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/noip2 temporary file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
No-ip No-ip2 | =2.1.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-5369 is classified as a medium severity vulnerability due to its potential for local privilege escalation.
To fix CVE-2008-5369, you should upgrade noip2 to a version that addresses this symlink vulnerability.
CVE-2008-5369 allows local users to perform a symlink attack to overwrite arbitrary files.
CVE-2008-5369 specifically affects version 2.1.7 of noip2.
CVE-2008-5369 cannot be exploited remotely as it requires local user access to the system.