CVE
- Id
- 29952
- CVE No.
- CVE-2007-6595
- Status
- Candidate
- Description
- ClamAV 0.92 allows local users to overwrite arbitrary files via a symlink attack on (1) temporary files used by the cli_gentempfd function in libclamav/others.c or on (2) .ascii files used by sigtool, when utf16-decode is enabled.
- Phase
- Assigned (20071231)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
316696 | 29952 | CVE-2007-6595 | BUGTRAQ:20071229 TK53 Advisory #2: Multiple vulnerabilities in ClamAV | View |
316697 | 29952 | CVE-2007-6595 | URL:http://www.securityfocus.com/archive/1/archive/1/485631/100/0/threaded | View |
316698 | 29952 | CVE-2007-6595 | CONFIRM:http://kolab.org/security/kolab-vendor-notice-19.txt | View |
316699 | 29952 | CVE-2007-6595 | DEBIAN:DSA-1497 | View |
316700 | 29952 | CVE-2007-6595 | URL:http://www.debian.org/security/2008/dsa-1497 | View |
316701 | 29952 | CVE-2007-6595 | GENTOO:GLSA-200808-07 | View |
316702 | 29952 | CVE-2007-6595 | URL:http://security.gentoo.org/glsa/glsa-200808-07.xml | View |
316703 | 29952 | CVE-2007-6595 | MANDRIVA:MDVSA-2008:088 | View |
316704 | 29952 | CVE-2007-6595 | URL:http://www.mandriva.com/security/advisories?name=MDVSA-2008:088 | View |
316705 | 29952 | CVE-2007-6595 | SUSE:SUSE-SA:2008:024 | View |
316706 | 29952 | CVE-2007-6595 | URL:http://lists.opensuse.org/opensuse-security-announce/2008-04/msg00009.html | View |
316707 | 29952 | CVE-2007-6595 | BID:27064 | View |
316708 | 29952 | CVE-2007-6595 | URL:http://www.securityfocus.com/bid/27064 | View |
316709 | 29952 | CVE-2007-6595 | VUPEN:ADV-2008-0606 | View |
316710 | 29952 | CVE-2007-6595 | URL:http://www.vupen.com/english/advisories/2008/0606 | View |
316711 | 29952 | CVE-2007-6595 | SECTRACK:1019148 | View |
316712 | 29952 | CVE-2007-6595 | URL:http://securitytracker.com/id?1019148 | View |
316713 | 29952 | CVE-2007-6595 | SECUNIA:28949 | View |
316714 | 29952 | CVE-2007-6595 | URL:http://secunia.com/advisories/28949 | View |
316715 | 29952 | CVE-2007-6595 | SECUNIA:29891 | View |
316716 | 29952 | CVE-2007-6595 | URL:http://secunia.com/advisories/29891 | View |
316717 | 29952 | CVE-2007-6595 | SECUNIA:31437 | View |
316718 | 29952 | CVE-2007-6595 | URL:http://secunia.com/advisories/31437 | View |
316719 | 29952 | CVE-2007-6595 | SREASON:3501 | View |
316720 | 29952 | CVE-2007-6595 | URL:http://securityreason.com/securityalert/3501 | View |
316721 | 29952 | CVE-2007-6595 | XF:clamantivirus-cligentempfd-symlink(39335) | View |
316722 | 29952 | CVE-2007-6595 | URL:http://xforce.iss.net/xforce/xfdb/39335 | View |
316723 | 29952 | CVE-2007-6595 | XF:clamantivirus-sigtool-file-overwrite(39339) | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
56089 | JVNDB-2007-004781 | IPortalX におけるクロスサイトスクリプティングの脆弱性 | IPortalX には、クロスサイトスクリプティングの脆弱性が存在します。 | CVE-2007-6597 | 29952 | 4.3 | http://jvndb.jvn.jp/ja/contents/2007/JVNDB-2007-004781.html | View |