CVE-2005-0866

NameCVE-2005-0866
Descriptioncdrecord before 4:2.0, when DEBUG is enabled, allows local users to overwrite arbitrary files via a symlink attack on temporary files.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
Debian Bugs291376

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
cdrtoolssource(unstable)4:2.01+01a01-4low291376

Notes

[sarge] - cdrtools <no-dsa> (Only exploitable in rare debugging mode)
[woody] - cdrtools <no-dsa> (Only exploitable in rare debugging mode)

Search for package or bug name: Reporting problems