CVE-2005-2991
Publication date 20 September 2005
Last updated 17 July 2025
Ubuntu priority
Description
ncompress 4.2.4 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files using (1) zdiff or (2) zcmp, a different vulnerability than CVE-2004-0970.