The installer in PEAR before 1.9.2 allows local users to overwrite arbitrary files via a symlink attack on the package.xml file, related to the (1) download_dir, (2) cache_dir, (3) tmp_dir, and (4) pear-build-download directories, a different vulnerability than CVE-2007-2519.
2011-03-03T01:00:01.257
2025-04-11T00:51:21.963
Deferred
CVSSv2: 3.3 (LOW)
AV:L/AC:M/Au:N/C:N/I:P/A:P
3.4
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | php | pear | ≤ 1.9.1 | Yes |
Application | php | pear | 0.2.2 | Yes |
Application | php | pear | 0.9 | Yes |
Application | php | pear | 0.10 | Yes |
Application | php | pear | 0.11 | Yes |
Application | php | pear | 0.90 | Yes |
Application | php | pear | 1.0 | Yes |
Application | php | pear | 1.0.1 | Yes |
Application | php | pear | 1.1 | Yes |
Application | php | pear | 1.2 | Yes |
Application | php | pear | 1.2.1 | Yes |
Application | php | pear | 1.3 | Yes |
Application | php | pear | 1.3.1 | Yes |
Application | php | pear | 1.3.3 | Yes |
Application | php | pear | 1.3.3.1 | Yes |
Application | php | pear | 1.3.4 | Yes |
Application | php | pear | 1.3.5 | Yes |
Application | php | pear | 1.3.6 | Yes |
Application | php | pear | 1.4.0 | Yes |
Application | php | pear | 1.4.0 | Yes |
Application | php | pear | 1.4.0 | Yes |
Application | php | pear | 1.4.1 | Yes |
Application | php | pear | 1.4.2 | Yes |
Application | php | pear | 1.5.0 | Yes |
Application | php | pear | 1.5.1 | Yes |
Application | php | pear | 1.6.1 | Yes |