CVE Database
/

CVE-2010-4337

Back to search

CVE-2010-4337

Published: Jan 14, 2011

Modified: Aug 7, 2024

PUBLISHED

Description

The configure script in gnash 0.8.8 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/gnash-configure-errors.$$, (2) /tmp/gnash-configure-warnings.$$, or (3) /tmp/gnash-configure-recommended.$$ files.

VendorProductVersions

n/a

n/a

affected
n/a

References

45102
vdb-entry
x_refsource_BID
42416
third-party-advisory
x_refsource_SECUNIA
DSA-2435
vendor-advisory
x_refsource_DEBIAN
69533
vdb-entry
x_refsource_OSVDB
48466
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now