CVE-2005-2991

Publication date 20 September 2005

Last updated 17 July 2025


Ubuntu priority

Description

ncompress 4.2.4 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files using (1) zdiff or (2) zcmp, a different vulnerability than CVE-2004-0970.

Status

Package Ubuntu Release Status
ncompress 7.04 feisty
Not affected
6.10 edgy
Not affected
6.06 LTS dapper
Not affected