CVE-2013-1444
Severity CVSS v4.0:
Pending analysis
Type:
CWE-59
Link Following
Publication date:
30/09/2013
Last modified:
11/04/2025
Description
A certain Debian patch for txt2man 1.5.5, as used in txt2man 1.5.5-2, 1.5.5-4, and others, allows local users to overwrite arbitrary files via a symlink attack on /tmp/2222.
Impact
Base Score 2.0
3.30
Severity 2.0
LOW
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:debian:txt2man:1.5.5-2:*:*:*:*:*:*:* | ||
| cpe:2.3:a:debian:txt2man:1.5.5-4:*:*:*:*:*:*:* | ||
| cpe:2.3:a:marc_vertes:txt2man:1.5.5:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=724614
- http://osvdb.org/97769
- http://seclists.org/oss-sec/2013/q3/660
- http://www.ubuntu.com/usn/USN-1979-1
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=724614
- http://osvdb.org/97769
- http://seclists.org/oss-sec/2013/q3/660
- http://www.ubuntu.com/usn/USN-1979-1



