RSS   Vulnerabilities for 'Xastir'   RSS

2008-11-06
 
CVE-2008-4987

CWE-59
 

 
xastir 1.9.2 allows local users to overwrite arbitrary files via a symlink attack on the (a) /tmp/ldconfig.tmp, (b) /tmp/ldconf.tmp, and (c) /tmp/ld.so.conf temporary files, related to the (1) get-maptools.sh and (2) get_shapelib.sh scripts.

 


Copyright 2024, cxsecurity.com

 

Back to Top