Candidate: CVE-2008-3931 PublicDate: 2008-09-04 18:41:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3931 Description: javareconf in R 2.7.2 allows local users to overwrite arbitrary files via a symlink attack on temporary files. Ubuntu-Description: Notes: Mitigation: Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=496363 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=496418 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_r-base-core-ra: upstream_r-base-core-ra: released (1.1.1-2) trusty_r-base-core-ra: ignored (out of standard support) xenial_r-base-core-ra: ignored (out of standard support) Patches_r-base: upstream_r-base: released (2.7.2-1) trusty/esm_r-base: needs-triage trusty_r-base: ignored (out of standard support) xenial_r-base: ignored (out of standard support) bionic_r-base: not-affected (3.4.4-1ubuntu1) focal_r-base: not-affected impish_r-base: not-affected jammy_r-base: not-affected devel_r-base: not-affected