Vulnerability Description
linki.py in ekg 2005-06-05 and earlier allows local users to overwrite or create arbitrary files via a symlink attack on temporary files.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ekg Project | Ekg | <= 2005-06-05 |
| Debian | Debian Linux | 3.1 |
Related Weaknesses (CWE)
References
- http://marc.info/?l=bugtraq&m=112060146011122&w=2Mailing ListTechnical Description
- http://marc.info/?l=bugtraq&m=112198499417250&w=2Mailing List
- http://www.debian.org/security/2005/dsa-760Third Party Advisory
- http://www.zataz.net/adviso/ekg-06062005.txtBroken LinkVendor Advisory
- http://marc.info/?l=bugtraq&m=112060146011122&w=2Mailing ListTechnical Description
- http://marc.info/?l=bugtraq&m=112198499417250&w=2Mailing List
- http://www.debian.org/security/2005/dsa-760Third Party Advisory
- http://www.zataz.net/adviso/ekg-06062005.txtBroken LinkVendor Advisory
FAQ
What is CVE-2005-1916?
CVE-2005-1916 is a vulnerability with a CVSS score of 5.5 (MEDIUM). linki.py in ekg 2005-06-05 and earlier allows local users to overwrite or create arbitrary files via a symlink attack on temporary files.
How severe is CVE-2005-1916?
CVE-2005-1916 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-1916?
Check the references section above for vendor advisories and patch information. Affected products include: Ekg Project Ekg, Debian Debian Linux.