~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
Candidate: CVE-2008-5146
PublicDate: 2008-11-18
References:
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5146
Description:
 add-accession-numbers in ctn 3.0.6 allows local users to overwrite
 arbitrary files via a symlink attack on the /tmp/accession temporary file.
Ubuntu-Description:
Notes:
 jdstrand> per Debian, affected code is in example script
Bugs:
Priority: negligible
Discovered-by:
Assigned-to:

Patches_ctn:
upstream_ctn: needs-triage
dapper_ctn: ignored (reached end-of-life)
gutsy_ctn: needed (reached end-of-life)
hardy_ctn: ignored (reached end-of-life)
intrepid_ctn: needed (reached end-of-life)
jaunty_ctn: ignored (reached end-of-life)
karmic_ctn: ignored (reached end-of-life)
lucid_ctn: ignored (reached end-of-life)
maverick_ctn: ignored (reached end-of-life)
natty_ctn: ignored (reached end-of-life)
oneiric_ctn: ignored (reached end-of-life)
precise_ctn: ignored (reached end-of-life)
precise/esm_ctn: DNE (precise was needed)
quantal_ctn: ignored (reached end-of-life)
raring_ctn: ignored (reached end-of-life)
saucy_ctn: ignored (reached end-of-life)
trusty_ctn: needed
utopic_ctn: ignored (reached end-of-life)
vivid_ctn: ignored (reached end-of-life)
vivid/stable-phone-overlay_ctn: DNE
vivid/ubuntu-core_ctn: DNE
wily_ctn: ignored (reached end-of-life)
xenial_ctn: needed
yakkety_ctn: ignored (reached end-of-life)
zesty_ctn: needed
devel_ctn: needed