Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2011-5146

Overview

Vulnerability Score 2.6 2.6
CVE Id CVE-2011-5146
Last Modified 05 Sep 2012 12:00:00
Published 31 Aug 2012 05:55:02
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector LOCAL
Access Complexity HIGH
Authentication NONE

CVE-2011-5146

Summary

Bokken before 1.6 and 1.5-x before 1.5-3 for Debian allows local users to overwrite arbitrary files via a symlink attack on /tmp/graph.dot.

Vulnerable Systems

Application

  • Ingumadev Bokken 1.5


References

OSVDB - 77700

SECUNIA - 47252

CONFIRM - http://ingumadev.blogspot.com/2012/01/bokken-16-is-more-stable-and-easier-to.html

CONFIRM - http://inguma.eu/projects/bokken/repository/revisions/56894084b0ec

CONFIRM - http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=651931


Last Updated: 27 May 2016 11:00:25