thttpd on Debian GNU/Linux, and possibly other distributions, allows local users to create or touch arbitrary files via a symlink attack on the start_thttpd temporary file.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: debian

Published: 2006-10-31T19:00:00

Updated: 2024-08-07T19:06:06.484Z

Reserved: 2006-08-21T00:00:00

Link: CVE-2006-4248

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2006-10-31T19:07:00.000

Modified: 2008-09-05T21:09:12.883

Link: CVE-2006-4248

cve-icon Redhat

No data.