← Back

CVE-2008-6398

nvd nist
Published: Mar 4, 2009Modified: Apr 23, 2026

JSON object

Loading...
6.9
Vector
AV:L/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 3.4 / Impact: 10.0
Source: NVD

Description

sng_regress in SNG 1.0.2 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/recompiled$$.png, (2) /tmp/decompiled$$.sng, and (3) /tmp/canonicalized$$.sng temporary files.

Affected (1)

Products: Eric Raymond: Sng
1 product
Sng
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 1.0.2

References (8)

Timeline

No history available yet.