CVE
- Id
- 42517
- CVE No.
- CVE-2009-5082
- Status
- Candidate
- Description
- The (1) configure and (2) config.guess scripts in GNU troff (aka groff) 1.20.1 on Openwall GNU/*/Linux (aka Owl) improperly create temporary files upon a failure of the mktemp function, which makes it easier for local users to overwrite arbitrary files via a symlink attack on a temporary file.
- Phase
- Assigned (20110630)
- Votes
- None (candidate not yet proposed)
- Comments