Description
scripts/annotate-output.sh in devscripts before 2.12.2, as used in rpmdevtools before 8.3, allows local users to modify arbitrary files via a symlink attack on the temporary (1) standard output or (2) standard error output file.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-2549-1 | devscripts security update |
EUVD |
EUVD-2012-3456 | scripts/annotate-output.sh in devscripts before 2.12.2, as used in rpmdevtools before 8.3, allows local users to modify arbitrary files via a symlink attack on the temporary (1) standard output or (2) standard error output file. |
Ubuntu USN |
USN-1593-1 | devscripts vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T20:05:12.543Z
Reserved: 2012-06-14T00:00:00.000Z
Link: CVE-2012-3500
No data.
Status : Deferred
Published: 2012-10-01T00:55:01.460
Modified: 2025-04-11T00:51:21.963
Link: CVE-2012-3500
OpenCVE Enrichment
No data.
Debian DSA
EUVD
Ubuntu USN