CVE-2004-0996

Publication date 10 January 2005

Last updated 17 July 2025


Ubuntu priority

Description

main.c in cscope 15-4 and 15-5 creates temporary files with predictable filenames, which allows local users to overwrite arbitrary files via a symlink attack.

Status

Package Ubuntu Release Status
cscope 7.04 feisty
Fixed 15.5+cvs20050816-1
6.10 edgy
Fixed 15.5+cvs20050816-1
6.06 LTS dapper
Fixed 15.5+cvs20050816-1


Access our resources on patching vulnerabilities