Lucene search

K
osvGoogleOSV:DSA-575-1
HistoryOct 28, 2004 - 12:00 a.m.

catdoc - insecure temporary file

2004-10-2800:00:00
Google
osv.dev
8

EPSS

0

Percentile

5.1%

A temporary file problem has been discovered in xlsview from the
catdoc suite, convertors from Word to TeX and plain text, which could
lead to local users being able to overwrite arbitrary files via a
symlink attack on predictable temporary file names.

For the stable distribution (woody) this problem has been fixed in
version 0.91.5-1.woody3.

For the unstable distribution (sid) this problem has been fixed in
version 0.91.5-2.

We recommend that you upgrade your catdoc package.

EPSS

0

Percentile

5.1%