Candidate: CVE-2008-5372 PublicDate: 2008-12-08 23:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5372 Description: sdm-login in sdm-terminal 0.4.0b allows local users to overwrite arbitrary files via a symlink attack on the /tmp/sdm.autologin.once temporary file. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_sdm: upstream_sdm: released (0.4.1-1) dapper_sdm: ignored (reached end-of-life) gutsy_sdm: needed (reached end-of-life) hardy_sdm: ignored (reached end-of-life) intrepid_sdm: needed (reached end-of-life) jaunty_sdm: ignored (reached end-of-life) karmic_sdm: ignored (reached end-of-life) lucid_sdm: not-affected (0.4.1-1) maverick_sdm: not-affected (0.4.1-1) natty_sdm: not-affected (0.4.1-1) oneiric_sdm: not-affected (0.4.1-1) devel_sdm: not-affected (0.4.1-1)