CVE
- Id
- 35054
- CVE No.
- CVE-2008-4937
- Status
- Candidate
- Description
- senddoc in OpenOffice.org (OOo) 2.4.1 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/log.obr.##### temporary file.
- Phase
- Assigned (20081105)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
383629 | 35054 | CVE-2008-4937 | MLIST:[oss-security] 20081030 CVE requests: tempfile issues for aview, mgetty, openoffice, crossfire | View |
383630 | 35054 | CVE-2008-4937 | URL:http://www.openwall.com/lists/oss-security/2008/10/30/2 | View |
383631 | 35054 | CVE-2008-4937 | MISC:http://uvw.ru/report.lenny.txt | View |
383632 | 35054 | CVE-2008-4937 | CONFIRM:http://bugs.debian.org/496361 | View |
383633 | 35054 | CVE-2008-4937 | CONFIRM:http://dev.gentoo.org/~rbu/security/debiantemp/openoffice.org-common | View |
383634 | 35054 | CVE-2008-4937 | CONFIRM:https://bugs.gentoo.org/235824 | View |
383635 | 35054 | CVE-2008-4937 | CONFIRM:https://bugs.gentoo.org/show_bug.cgi?id=235770 | View |
383636 | 35054 | CVE-2008-4937 | GENTOO:GLSA-200812-13 | View |
383637 | 35054 | CVE-2008-4937 | URL:http://security.gentoo.org/glsa/glsa-200812-13.xml | View |
383638 | 35054 | CVE-2008-4937 | MANDRIVA:MDVSA-2009:070 | View |
383639 | 35054 | CVE-2008-4937 | URL:http://www.mandriva.com/security/advisories?name=MDVSA-2009:070 | View |
383640 | 35054 | CVE-2008-4937 | UBUNTU:USN-677-2 | View |
383641 | 35054 | CVE-2008-4937 | URL:http://www.ubuntu.com/usn/usn-677-2 | View |
383642 | 35054 | CVE-2008-4937 | UBUNTU:USN-677-1 | View |
383643 | 35054 | CVE-2008-4937 | URL:http://www.ubuntu.com/usn/usn-677-1 | View |
383644 | 35054 | CVE-2008-4937 | BID:30925 | View |
383645 | 35054 | CVE-2008-4937 | URL:http://www.securityfocus.com/bid/30925 | View |
383646 | 35054 | CVE-2008-4937 | SECUNIA:33140 | View |
383647 | 35054 | CVE-2008-4937 | URL:http://secunia.com/advisories/33140 | View |
383648 | 35054 | CVE-2008-4937 | SECUNIA:32856 | View |
383649 | 35054 | CVE-2008-4937 | URL:http://secunia.com/advisories/32856 | View |
383650 | 35054 | CVE-2008-4937 | XF:openoffice-senddoc-symlink(44829) | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
48299 | JVNDB-2008-003609 | arb-common における任意のファイルを上書きされる脆弱性 | arb-common は、(1) arb_fastdnaml および (2) dszmconnect.pl スクリプトに不備があるため、任意のファイルを上書きされる脆弱性が存在します。 | CVE-2008-4941 | 35054 | 6.9 | http://jvndb.jvn.jp/ja/contents/2008/JVNDB-2008-003609.html | View |