1.2
CVSSv2

CVE-2003-0438

Published: 24/07/2003 Updated: 05/09/2008
CVSS v2 Base Score: 1.2 | Impact Score: 2.9 | Exploitability Score: 1.9
VMScore: 107
Vector: AV:L/AC:H/Au:N/C:N/I:P/A:N

Vulnerability Summary

eldav WebDAV client for Emacs, version 0.7.2 and previous versions, allows local users to create or overwrite arbitrary files via a symlink attack on temporary files.

Vulnerable Product Search on Vulmon Subscribe to Product

yuuichi teranishi eldav

Vendor Advisories

eldav, a WebDAV client for Emacs, creates temporary files without taking appropriate security precautions This vulnerability could be exploited by a local user to create or overwrite files with the privileges of the user running emacs and eldav For the stable distribution (woody) this problem has been fixed in version 0020020411-1woody1 The ol ...