CVE-2009-5082 PUBLISHED CVSS 3.299999952316284 LOW

The (1) configure and (2) config.guess scripts in GNU troff (aka groff) 1.20.1 on Openwall GNU/*/Linux (aka Owl) improperly create temporary files upon a failure of the mktemp function, which makes it easier for local users to overwrite arbitrary files via a symlink attack on a temporary file.

EPSS 0.03% · 8.8th percentile

Risk Scores

CVSS v2.0
3.299999952316284
EPSS Score
0.03%
8.8th percentile

Affected Products

VendorProductVersions
gnugroff1.20.1
n/an/an/a

Timeline

References

Open in Interactive Console →