CVE-2010-4337
Publication date 14 January 2011
Last updated 24 July 2024
Ubuntu priority
The configure script in gnash 0.8.8 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/gnash-configure-errors.$$, (2) /tmp/gnash-configure-warnings.$$, or (3) /tmp/gnash-configure-recommended.$$ files.
Status
Package | Ubuntu Release | Status |
---|---|---|
gnash | ||
16.04 LTS xenial |
Not affected
|
|
14.04 LTS trusty | Not in release | |