ubuntu · CVE-2008-4580

Quick triage

Priority: medium Published: 2008-10-15 00:00:00 UTC Updated: 2024-07-24 15:57:39 UTC

View at Official ubuntu advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2008-4580 medium priority: Ubuntu including 2 source packages (redhat-cluster, redhat-cluster-suite), 16 status rows across 8 suites (dapper, feisty, gutsy, hardy, intrepid, jaunty, karmic, upstream): DNE 7, not-affected 5, released 2, ignored 1, needs-triage 1.

Description:

fence_manual, as used in fence 2.02.00-r1 and possibly cman, allows local users to modify arbitrary files via a symlink attack on the fence_manual.fifo temporary file.

cvelogic Threat Intelligence