CVE-2008-5367
EPSS 0.08%
Description
ip-up in ppp-udeb 2.4.4rel on Debian GNU/Linux allows local users to overwrite arbitrary files via a symlink attack on the /tmp/resolv.conf.tmp temporary file.
How to fix CVE-2008-5367
No fixed version has been published yet. Mitigate by removing the affected package or applying upstream guidance from the references below.
- Debian/ppp—no fix listed
Is CVE-2008-5367 being exploited?
Low — EPSS is 0.1%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0