CVE-2008-5373: Medium severity softaculous ampps vulnerability
mtx-changer.Adic-Scalar-24 in bacula-common 2.4.2 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/mtx.##### temporary file, probably a related issue to CVE-2005-2995.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-5373?
CVE-2008-5373 is considered a local privilege escalation vulnerability that can lead to unauthorized file overwrites.
How do I fix CVE-2008-5373?
To fix CVE-2008-5373, update to a patched version of bacula that resolves symlink issues and prohibits arbitrary file overwrites.
What systems are affected by CVE-2008-5373?
CVE-2008-5373 specifically affects bacula-common version 2.4.2 on systems that allow local users to create symlinks.
Can CVE-2008-5373 be exploited remotely?
No, CVE-2008-5373 can only be exploited by local users with access to the affected system.
What is a symlink attack in the context of CVE-2008-5373?
A symlink attack in CVE-2008-5373 involves creating a symbolic link to a file that allows local users to overwrite sensitive files when bacula accesses a temporary file.