Back to search
CVE-2018-6198
Published: Jan 25, 2018
Modified: Aug 5, 2024
PUBLISHED
Description
w3m through 0.5.3 does not properly handle temporary files when the ~/.w3m directory is unwritable, which allows a local attacker to craft a symlink attack to overwrite arbitrary files.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://bugs.debian.org/888097
x_refsource_CONFIRM
USN-3555-2
vendor-advisory
x_refsource_UBUNTU
USN-3555-1
vendor-advisory
x_refsource_UBUNTU
https://github.com/tats/w3m/commit/18dcbadf2771cdb0c18509b14e4e73505b242753
x_refsource_CONFIRM
102855
vdb-entry
x_refsource_BID
openSUSE-SU-2019:1142
vendor-advisory
x_refsource_SUSE
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now