Vulnerabilities > Gpsdrive

DATE CVE VULNERABILITY TITLE RISK
2008-12-22 CVE-2008-5704 Link Following vulnerability in Gpsdrive 1.32/1.33/2.09
src/unit_test.c in gpsdrive (aka gpsdrive-scripts) 2.10~pre4 might allow local users to overwrite arbitrary files via a symlink attack on the /tmp/gpsdrive-unit-test/proc temporary file, a different vector than CVE-2008-4959 and CVE-2008-5380.
network
high complexity
gpsdrive CWE-59
7.6
2008-12-22 CVE-2008-5703 Link Following vulnerability in Gpsdrive 1.32/1.33/2.09
gpsdrive (aka gpsdrive-scripts) 2.10~pre4 allows local users to overwrite arbitrary files via a symlink attack on the (a) /tmp/.smswatch or (b) /tmp/gpsdrivepos temporary file, related to (1) examples/gpssmswatch and (2) src/splash.c, different vectors than CVE-2008-4959 and CVE-2008-5380.
local
high complexity
gpsdrive CWE-59
6.2
2008-12-08 CVE-2008-5380 Link Following vulnerability in Gpsdrive 2.09
gpsdrive (aka gpsdrive-scripts) 2.09 allows local users to overwrite arbitrary files via a symlink attack on an (a) /tmp/geo#####, a (b) /tmp/geocaching.loc, a (c) /tmp/geo#####.*, or a (d) /tmp/geo.* temporary file, related to the (1) geo-code and (2) geo-nearest scripts, different vectors than CVE-2008-4959.
6.9
2008-11-05 CVE-2008-4959 Link Following vulnerability in Gpsdrive Gpsdrive-Scripts 2.10
geo-code in gpsdrive-scripts 2.10~pre4 allows local users to overwrite arbitrary files via a symlink attack on (1) /tmp/geo.google, (2) /tmp/geo.yahoo, (3) /tmp/geo.coords, and (4) /tmp/geo#####.coords temporary files.
6.9