CVE-2012-5355

Publication date 10 October 2012

Last updated 24 July 2024


Ubuntu priority

Description

welcome.py in xdiagnose before 2.5.2ubuntu0.1 allows local users to overwrite arbitrary files via a symlink attack on a temporary file with a predictable name in /tmp.

Status

Package Ubuntu Release Status
xdiagnose 12.04 LTS precise
Fixed 2.5.2ubuntu0.1
11.10 oneiric
Not affected
11.04 natty
Not affected
10.04 LTS lucid Not in release
8.04 LTS hardy Not in release


Access our resources on patching vulnerabilities