Vulnerability Description
The (1) kantiword (kantiword.sh) and (2) gantiword (gantiword.sh) scripts in antiword 0.35 and earlier allow local users to overwrite arbitrary files via a symlink attack on temporary (a) output and (b) error files.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Antiword | Antiword | 0.32 |
Related Weaknesses (CWE)
References
- http://secunia.com/advisories/15866Vendor Advisory
- http://secunia.com/advisories/18530PatchVendor Advisory
- http://www.debian.org/security/2005/dsa-945
- http://www.securityfocus.com/bid/16278
- http://www.vupen.com/english/advisories/2006/0242Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24194
- http://secunia.com/advisories/15866Vendor Advisory
- http://secunia.com/advisories/18530PatchVendor Advisory
- http://www.debian.org/security/2005/dsa-945
- http://www.securityfocus.com/bid/16278
- http://www.vupen.com/english/advisories/2006/0242Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24194
FAQ
What is CVE-2005-3126?
CVE-2005-3126 is a vulnerability with a CVSS score of 1.9 (LOW). The (1) kantiword (kantiword.sh) and (2) gantiword (gantiword.sh) scripts in antiword 0.35 and earlier allow local users to overwrite arbitrary files via a symlink attack on temporary (a) output and (...
How severe is CVE-2005-3126?
CVE-2005-3126 has been rated LOW with a CVSS base score of 1.9/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-3126?
Check the references section above for vendor advisories and patch information. Affected products include: Antiword Antiword.