Vulnerabilities > Debian > Xsabre

DATE CVE VULNERABILITY TITLE RISK
2008-10-03 CVE-2008-4407 Denial-Of-Service vulnerability in Debian Xsabre 0.2.4B
XRunSabre in sabre (aka xsabre) 0.2.4b relies on the ability to create /tmp/sabre.log, which allows local users to cause a denial of service (application unavailability) by creating a /tmp/sabre.log file that cannot be overwritten.
local
low complexity
debian
2.1
2008-10-03 CVE-2008-4406 Link Following vulnerability in Debian Xsabre 0.2.4B
A certain Debian patch to the run scripts for sabre (aka xsabre) 0.2.4b allows local users to delete or overwrite arbitrary files via a symlink attack on unspecified .tmp files.
local
low complexity
debian CWE-59
7.2