Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

Mandriva: Subject: [Security Announce] [ MDVSA-2008:214 ] mon

BugsAlert Home > Mandriva: Subject: [Security Announce] [ MDVSA-2008:214 ] mon
 
 

LinuxSecurity.com: Dmitry E. Oboukhov found that the test.alert script used in one of the alert functions in mon created temporary files insecurely, which could lead to a local denial of service or arbitrary file overwrite via a symlink attack (CVE-2008-4477). The updated packages have been patched to prevent this issue.




Original Source: http://www.linuxsecurity.com/content/view/143326?rdf

Learn more about Mandriva: Subject: [Security Announce] [ MDVSA-2008:214 ] mon
 
Tags: mandriva subject security announce mdvsa-2008 214 mon

Related Items

      CVE-2008-5764 (worksimple)

      Red Hat update for e2fsprogs

      CVE-2008-2837 (cms-brd)

      Bugtraq: rPSA-2008-0206-1 ruby

      Fedora Security Update Fixes Perl Expression Engine Code Execution

      FrSIRT - Broadcast Machine "baseDir" Remote File Inclusion Vulnerabilities

      phpBazar "adid" SQL Injection Vulnerability

 

Pixel