Candidate: CVE-2008-5703 PublicDate: 2008-12-22 15:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5703 Description: gpsdrive (aka gpsdrive-scripts) 2.10~pre4 allows local users to overwrite arbitrary files via a symlink attack on the (a) /tmp/.smswatch or (b) /tmp/gpsdrivepos temporary file, related to (1) examples/gpssmswatch and (2) src/splash.c, different vectors than CVE-2008-4959 and CVE-2008-5380. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_gpsdrive: upstream_gpsdrive: released (2.10~pre4-6.dfsg-2) dapper_gpsdrive: ignored (reached end-of-life) gutsy_gpsdrive: needed (reached end-of-life) hardy_gpsdrive: ignored (reached end-of-life) intrepid_gpsdrive: needed (reached end-of-life) jaunty_gpsdrive: ignored (reached end-of-life) karmic_gpsdrive: ignored (reached end-of-life) lucid_gpsdrive: not-affected (2.10~pre4-6.dfsg-3ubuntu3) maverick_gpsdrive: not-affected (2.10~pre4-6.dfsg-3ubuntu3) natty_gpsdrive: not-affected (2.10~pre4-6.dfsg-3ubuntu3) oneiric_gpsdrive: not-affected (2.10~pre4-6.dfsg-3ubuntu3) devel_gpsdrive: not-affected (2.10~pre4-6.dfsg-3ubuntu3)