NA

CVE-2005-2965

Published: 12/10/2005 Updated: 07/11/2023

Vulnerability Summary

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-4802, CVE-2005-4803. Reason: this candidate was intended for one issue, but the description and references inadvertently combined multiple issues. Notes: All CVE users should consult CVE-2005-4802 and CVE-2005-4803 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage

Vendor Advisories

Javier Fern�ndez-Sanguino Pe�a discovered that the “dotty” tool created and used temporary files in an insecure way A local attacker could exploit this with a symlink attack to create or overwrite arbitrary files with the privileges of the user running dotty ...
Debian Bug report logs - #336985 graphviz: DSA 857: insecure temp file creation Package: graphviz; Maintainer for graphviz is Laszlo Boszormenyi (GCS) <gcs@debianorg>; Source for graphviz is src:graphviz (PTS, buildd, popcon) Reported by: Nathanael Nerode <neroden@twcnyrrcom> Date: Wed, 2 Nov 2005 02:03:05 UTC S ...