CVE-2006-1695
Publication date 11 April 2006
Last updated 24 July 2024
Ubuntu priority
The fbgs script in the fbi package 2.01-1.4, when the TMPDIR environment variable is not defined, allows local users to overwrite arbitrary files via a symlink attack on temporary files in /var/tmp/fbps-[PID].
Status
Package | Ubuntu Release | Status |
---|---|---|
fbi | 9.10 karmic |
Fixed 2.05-2ubuntu1
|
9.04 jaunty |
Fixed 2.05-2ubuntu1
|
|
8.10 intrepid |
Fixed 2.05-2ubuntu1
|
|
8.04 LTS hardy |
Fixed 2.05-2ubuntu1
|
|
7.10 gutsy |
Fixed 2.05-2ubuntu1
|
|
7.04 feisty |
Fixed 2.05-2ubuntu1
|
|
6.10 edgy |
Fixed 2.05-2ubuntu1
|
|
6.06 LTS dapper | Ignored end of life |