Candidate: CVE-2008-4974 PublicDate: 2008-11-06 15:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4974 Description: rrdedit in netmrg 0.20 allows local users to overwrite arbitrary files via a symlink attack on (1) /tmp/*.xml and (2) /tmp/*.backup temporary files. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_netmrg: upstream_netmrg: released (0.20-2) dapper_netmrg: ignored (reached end-of-life) gutsy_netmrg: needed (reached end-of-life) hardy_netmrg: ignored (reached end-of-life) intrepid_netmrg: not-affected (0.20-2) jaunty_netmrg: not-affected (0.20-2) karmic_netmrg: not-affected (0.20-2) lucid_netmrg: not-affected (0.20-2) maverick_netmrg: not-affected (0.20-2) natty_netmrg: not-affected (0.20-2) oneiric_netmrg: not-affected (0.20-2) devel_netmrg: not-affected (0.20-2)