Back

LOW

security flaw

Published Sep 21, 2005

Description

The sort_offline function for texindex in texinfo 4.8 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files.

Affected products

Remediation

Red Hat statement

Updated packages to correct this issue are available along with our advisory: http://rhn.redhat.com/errata/CVE-2005-3011.html Red Hat Enterprise Linux 5 is not vulnerable to this issue as it contains a backported patch.

Metrics

Weaknesses (1)

References (36)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Sep 21, 2005
Updated Aug 7, 2024
Reserved Sep 21, 2005
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Low
Public date Feb 9, 2000