Candidate: CVE-2011-2185 PublicDate: 2011-07-27 02:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-2185 Description: Fabric before 1.1.0 allows local users to overwrite arbitrary files via a symlink attack on (1) a /tmp/fab.*.tar file or (2) certain other files in the top level of /tmp/. Ubuntu-Description: Notes: Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=629003 Priority: negligible Priority_fabric_lucid: medium Discovered-by: Assigned-to: CVSS: Patches_fabric: upstream_fabric: released (1.1.2-1) hardy_fabric: DNE lucid_fabric: ignored (reached end-of-life) maverick_fabric: ignored (reached end-of-life) natty_fabric: ignored (reached end-of-life) oneiric_fabric: ignored (reached end-of-life) precise_fabric: ignored (reached end-of-life) precise/esm_fabric: DNE (precise was needed) quantal_fabric: ignored (reached end-of-life) raring_fabric: ignored (reached end-of-life) saucy_fabric: ignored (reached end-of-life) trusty_fabric: not-affected (1.8.2-1) trusty/esm_fabric: DNE (trusty was not-affected [1.8.2-1]) utopic_fabric: ignored (reached end-of-life) vivid_fabric: ignored (reached end-of-life) vivid/stable-phone-overlay_fabric: DNE vivid/ubuntu-core_fabric: DNE wily_fabric: ignored (reached end-of-life) xenial_fabric: not-affected (1.8.2-1) yakkety_fabric: ignored (reached end-of-life) zesty_fabric: ignored (reached end-of-life) artful_fabric: ignored (reached end-of-life) bionic_fabric: not-affected (1.8.2-1) devel_fabric: not-affected (1.8.2-1)