CVE-2008-0673
EPSS 2.6%
Description
TinTin++ 1.97.9 and WinTin++ 1.97.9 open files on the basis of an inbound file-transfer request, before the user has an opportunity to decline the request, which allows remote attackers to truncate arbitrary files in the top level of a home directory.
How to fix CVE-2008-0673
To remediate CVE-2008-0673, upgrade the affected package to a fixed version below.
- Debian/tintin++—upgrade to 1.97.9-2 or later
Is CVE-2008-0673 being exploited?
Low — EPSS is 2.6%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 1.97.9-2