CVE-2011-3204

NameCVE-2011-3204
Descriptionhammerhead.cc in Hammerhead 2.1.4 allows local users to write to arbitrary files via a symlink attack on (1) /tmp/hammer.log (aka the HH_LOG file) or (2) the REPORT_LOG file.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
Debian Bugs639890

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
hammerheadsource(unstable)(unfixed)639890

Notes

[lenny] - hammerhead <no-dsa> (Minor issue)
[squeeze] - hammerhead <no-dsa> (Minor issue)
https://launchpad.net/bugs/826679

Search for package or bug name: Reporting problems