Vulnerabilities > Improper Link Resolution Before File Access ('Link Following')

DATE CVE VULNERABILITY TITLE RISK
2008-12-08 CVE-2008-5378 Link Following vulnerability in Lehrstuhl FUR Mikrobiologie ARB 0.0.20071207.1
arb-kill in arb 0.0.20071207.1 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/arb_pids_*_* temporary file.
6.9
2008-12-08 CVE-2008-5377 Link Following vulnerability in Apple Cups 1.3.8
pstopdf in CUPS 1.3.8 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/pstopdf.log temporary file, a different vulnerability than CVE-2001-1333.
local
apple CWE-59
6.9
2008-12-08 CVE-2008-5376 Link Following vulnerability in Crip 3.7
editcomment in crip 3.7 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/*.tag.tmp temporary file.
local
crip CWE-59
6.9
2008-12-08 CVE-2008-5375 Link Following vulnerability in Cmus 2.2.0
cmus-status-display in cmus 2.2.0 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/cmus-status temporary file.
local
cmus CWE-59
6.9
2008-12-08 CVE-2008-5374 Link Following vulnerability in Matthias Klose Bash-Doc 3.2
bash-doc 3.2 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/cb#####.? temporary file, related to the (1) aliasconv.sh, (2) aliasconv.bash, and (3) cshtobash scripts.
6.9
2008-12-08 CVE-2008-5373 Link Following vulnerability in Bacula 2.4.2
mtx-changer.Adic-Scalar-24 in bacula-common 2.4.2 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/mtx.##### temporary file, probably a related issue to CVE-2005-2995.
local
bacula CWE-59
6.9
2008-12-08 CVE-2008-5372 Link Following vulnerability in Jonas Smedegaard Sdm-Terminal 0.4.0B
sdm-login in sdm-terminal 0.4.0b allows local users to overwrite arbitrary files via a symlink attack on the /tmp/sdm.autologin.once temporary file.
6.9
2008-12-08 CVE-2008-5371 Link Following vulnerability in Marc Gloor Screenie 1.30.0
screenie in screenie 1.30.0 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/.screenie.##### temporary file.
6.9
2008-12-08 CVE-2008-5370 Link Following vulnerability in Pvpgn 1.8.1
pvpgn-support-installer in pvpgn 1.8.1 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/pvpgn-support-1.0.tar.gz temporary file.
local
pvpgn CWE-59
6.9
2008-12-08 CVE-2008-5369 Link Following vulnerability in No-Ip No-Ip2 2.1.7
noip2 in noip2 2.1.7 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/noip2 temporary file.
local
no-ip CWE-59
6.9