CVE-2011-1408: High severity Ikiwiki ikiwiki vulnerability
Published Oct 29, 2019
·Updated
ikiwiki before 3.20110608 allows remote attackers to hijack root's tty and run symlink attacks.
Affected Software
5 affected componentsFixes available
Ikiwiki ikiwiki<3.20110608
Debian Debian Linux=8.0
Debian Debian Linux=9.0
Debian Debian Linux=10.0
debian/ikiwiki
3.20200202.3-13.20250501-13.20260201-3
Event History
Oct 29, 2019
CVE Published
via MITRE·07:51 PM
Data Sourced
via MITRE·07:51 PM
Description
Feb 17, 2026
Data Sourced
via Debian·11:20 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2011-1408?
CVE-2011-1408 is considered a high severity vulnerability due to its potential to allow remote attackers to hijack root's tty.
2
How do I fix CVE-2011-1408?
To fix CVE-2011-1408, upgrade to versions 3.20200202.3-1 or 3.20200202.4-2 of the ikiwiki package.
3
What software is affected by CVE-2011-1408?
CVE-2011-1408 affects ikiwiki versions prior to 3.20110608 and specific versions of Debian GNU/Linux.
4
Can CVE-2011-1408 affect Debian systems?
Yes, CVE-2011-1408 affects Debian systems running versions 8.0, 9.0, and 10.0 with vulnerable ikiwiki installations.
5
What type of attack can CVE-2011-1408 facilitate?
CVE-2011-1408 can facilitate symlink attacks by allowing unauthorized access to the root tty.