Security Advisory

CVE-2008-5135

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2008-11-18 15:00:00
Last updated 2024-09-16 16:33:33
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

os-prober in os-prober 1.17 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/mounted-map or (2) /tmp/raided-map temporary file. NOTE: the vendor disputes this issue, stating "the insecure code path should only ever run inside a d-i environment, which has no non-root users.