CVE-2008-4941
EPSS 0.03%
Description
arb-common 0.0.20071207.1 allows local users to overwrite arbitrary files via a symlink attack on (a) /tmp/arb_fdnaml_*, (b) /tmp/arb_pids_*, (c) /tmp/arbdsmz.html, and (d) /tmp/arbdsmz.htm temporary files, related to the (1) arb_fastdnaml and (2) dszmconnect.pl scripts.
How to fix CVE-2008-4941
To remediate CVE-2008-4941, upgrade the affected package to a fixed version below.
- Debian/arb—upgrade to 0.0.20071207.1-5 or later
Is CVE-2008-4941 being exploited?
Low — EPSS is 0.0%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 0.0.20071207.1-5