The fedora-business-cards package before 1-0.1.beta1.fc17 on Fedora 17 and before 1-0.1.beta1.fc18 on Fedora 18 allows local users to cause a denial of service or write to arbitrary files via a symlink attack on /tmp/fedora-business-cards-buffer.svg.
2018-05-01T19:29:00.373
2024-11-21T01:46:57.933
Modified
CVSSv3.0: 7.1 (HIGH)
AV:L/AC:L/Au:N/C:N/I:P/A:P
3.9
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | fedoraproject | fedora | 17 | Yes |
Operating System | fedoraproject | fedora | 18 | Yes |