CVE-2008-3699
EPSS 0.03%Published: 8/14/2008Modified: 4/28/2026
Description
The MagnatuneBrowser::listDownloadComplete function in magnatunebrowser/magnatunebrowser.cpp in Amarok before 1.4.10 allows local users to overwrite arbitrary files via a symlink attack on the album_info.xml temporary file.
Affected packages (1)
- Debian/amarokfrom 0, < 1.4.10-1