CVE

Id
14989  
CVE No.
CVE-2005-3785  
Status
Candidate  
Description
Second-order symlink vulnerability in eix-sync.in in Ebuild IndeX (eix) before 0.5.0_pre2 allows local users to overwrite arbitrary files via a symlink attack on the exi.X.sync temporary file, which is processed by the diff-eix program.  
Phase
Assigned (20051123)  
Votes
None (candidate not yet proposed)  
Comments