FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2024-03-27 18:04:16 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
44ee8160-c453-11dd-a721-0030843d3802mgetty+sendfax -- symlink attack via insecure temporary files

Debian reports:

Faxspool in mgetty 1.1.36 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/faxsp.#### temporary file.


Discovery 2008-08-24
Entry 2008-12-07
mgetty+sendfax
< 1.1.35_2

CVE-2008-4936
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=496403
https://bugs.gentoo.org/show_bug.cgi?id=235806