Candidate: CVE-2012-2093 PublicDate: 2012-05-18 22:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-2093 http://www.openwall.com/lists/oss-security/2012/04/10/6 Description: src/common/latex.py in Gajim 0.15 allows local users to overwrite arbitrary files via a symlink attack on a temporary latex file, related to the get_tmpfile_name function. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_gajim: upstream_gajim: released (0.15-1.1) hardy_gajim: ignored (reached end-of-life) lucid_gajim: released (0.13-0ubuntu2.1) natty_gajim: released (0.13.4-3ubuntu2.1) oneiric_gajim: released (0.14.1-1ubuntu1.1) precise_gajim: ignored (reached end-of-life) precise/esm_gajim: DNE (precise was needed) quantal_gajim: ignored (reached end-of-life) raring_gajim: ignored (reached end-of-life) saucy_gajim: ignored (reached end-of-life) trusty_gajim: not-affected (0.15.4-2) trusty/esm_gajim: DNE (trusty was not-affected [0.15.4-2]) utopic_gajim: ignored (reached end-of-life) vivid_gajim: ignored (reached end-of-life) vivid/stable-phone-overlay_gajim: DNE vivid/ubuntu-core_gajim: DNE wily_gajim: ignored (reached end-of-life) xenial_gajim: not-affected (0.16.5-0.1) yakkety_gajim: ignored (reached end-of-life) zesty_gajim: ignored (reached end-of-life) artful_gajim: ignored (reached end-of-life) bionic_gajim: not-affected (1.0.1-3) devel_gajim: not-affected (1.0.3-1)