CVE-2012-3500
Publication date 3 September 2012
Last updated 24 July 2024
Ubuntu priority
scripts/annotate-output.sh in devscripts before 2.12.2, as used in rpmdevtools before 8.3, allows local users to modify arbitrary files via a symlink attack on the temporary (1) standard output or (2) standard error output file.
Status
Package | Ubuntu Release | Status |
---|---|---|
devscripts | ||
Notes
Patch details
References
Related Ubuntu Security Notices (USN)
- USN-1593-1
- devscripts vulnerabilities
- 2 October 2012