Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2008-5376

EPSS 0.02% · P7
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2008-5376

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
editcomment in crip 3.7 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/*.tag.tmp temporary file.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
crip editcomment symlink攻击漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
crip是一款基于终端的用于在LINUX/UNIX下创建Ogg Vorbis/FLAC/MP3文件的工具。 crip 3.7版本的editcomment允许本地用户可以借助对/tmp/*.tag.tmp临时文件的一个symlink攻击,重写任意文件。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2008-5376

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2008-5376

Please Login to view more intelligence information

Same Patch Batch · n/a · 2008-12-08 · 20 CVEs total

CVE-2008-5375CMus 不安全临时文件创建漏洞
CVE-2008-5365ActiveWebSoftwares ActiveVotes 'VoteHistory.asp' SQL注入漏洞
CVE-2008-5364Adobe getPlus ActiveX控件栈溢出漏洞
CVE-2008-5363Adobe Flash Player ActionScript 畸形PDF文件拒绝服务漏洞
CVE-2008-5362Adobe Flash Player ActionScript 畸形PDF敏感信息泄露漏洞
CVE-2008-5361Adobe Flash Player ActionScript中多个畸形PDF敏感信息泄露漏洞
CVE-2008-5380GpsDrive 'geo-nearest' 不安全临时文件创建漏洞
CVE-2008-5379Debian netdisco-mibs-installer symlink攻击漏洞
CVE-2008-5378ARB symlink攻击漏洞
CVE-2008-5377CUPS 'pstopdf' symlink攻击漏洞
CVE-2008-5366Debian 'ppp' 不安全临时文件创建漏洞
CVE-2008-5374bash-doc 不安全临时文件创建漏洞
CVE-2008-5373jose_luis_tallon bacula_common 不安全临时文件创建漏洞
CVE-2008-5372lessdisks.net sdm 不安全临时文件创建漏洞
CVE-2008-5371Screenie 不安全临时文件创建漏洞
CVE-2008-5370PvPGN 不安全临时文件创建漏洞
CVE-2008-5369noip2 不安全临时文件创建漏洞
CVE-2008-5368Muttprint 不安全临时文件创建漏洞
CVE-2008-5367Debian ppp-udeb 不安全临时文件创建漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2008-5376

No comments yet


Leave a comment