CVE-2013-0265

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
13/02/2013
Last modified:
11/04/2025

Description

The redirect_stderr function in xnbd_common.c in xnbd-server and xndb-wrapper in xNBD 0.1.0 allow local users to overwrite arbitrary files via a symlink attack on /tmp/xnbd.log.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:bitbucket:xnbd:0.1.0:pre:*:*:*:*:*:*